CVE-2018-11782
published 2019-09-26CVE-2018-11782: In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a well-formed read-only request…
PriorityP335medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
EPSS
2.42%
82.4th percentile
In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a well-formed read-only request produces a particular answer. This can lead to disruption for users of the server.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | subversion | <= 1.9.10 | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | >= 0 < 1.10.6-1 | 1.10.6-1 |
| apache | subversion | >= 0 < 1.10.6-1 | 1.10.6-1 |
| apache | subversion | >= 0 < 1.10.6-1 | 1.10.6-1 |
| apache | subversion | >= 0 < 1.10.6-1 | 1.10.6-1 |
| apache | subversion | >= 0 < 1.9.3-2ubuntu1.3 | 1.9.3-2ubuntu1.3 |
| apache | subversion | >= 0 < 1.9.7-4ubuntu1.1 | 1.9.7-4ubuntu1.1 |
| apache | subversion | >= 0 < 1.13.0-3ubuntu0.2 | 1.13.0-3ubuntu0.2 |
| apache | subversion | 1.10.0 – 1.10.4 | — |
| apache | subversion | 1.11.0 – 1.11.1 | — |
| debian | subversion | < subversion 1.10.6-1 (bookworm) | subversion 1.10.6-1 (bookworm) |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv6.5MEDIUM
vendor_apache6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
vendor_ubuntu6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
subversion vulnerabilities
osv·2022-05-26·CVSS 6.5
CVE-2018-11782 [MEDIUM] subversion vulnerabilities
subversion vulnerabilities
Ace Olszowka discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to cause
svnserver to crash, resulting in a denial of service. This issue only
affected Ubuntu 18.04 LTS. (CVE-2018-11782)
Tomas Bortoli discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to cause
svnserver to crash, resulting in a denial of service. This issue only
affected Ubuntu 18.04 LTS. (CVE-2019-0203)
Thomas Åkesson discovered that Subversion incorrectly handled certain
inputs. An attacker could possibly use this issue to cause a denial of
service. (CVE-2020-17525)
GHSA
GHSA-mggm-8657-6fhf: In Apache Subversion versions up to and including 1
ghsa_unreviewed·2022-05-24
CVE-2018-11782 [MEDIUM] CWE-20 GHSA-mggm-8657-6fhf: In Apache Subversion versions up to and including 1
In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a well-formed read-only request produces a particular answer. This can lead to disruption for users of the server.
OSV
CVE-2018-11782: In Apache Subversion versions up to and including 1
osv·2019-09-26·CVSS 6.5
CVE-2018-11782 [MEDIUM] CVE-2018-11782: In Apache Subversion versions up to and including 1
In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a well-formed read-only request produces a particular answer. This can lead to disruption for users of the server.
OSV
subversion vulnerabilities
osv·2019-07-31·CVSS 6.5
CVE-2018-11782 [MEDIUM] subversion vulnerabilities
subversion vulnerabilities
Ace Olszowka discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to
cause svnserver to crash, resulting in a denial of service.
(CVE-2018-11782)
Tomas Bortoli discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to
cause svnserver to crash, resulting in a denial of service. (CVE-2019-0203)
Ubuntu
Subversion vulnerabilities
vendor_ubuntu·2022-05-26·CVSS 6.5
CVE-2020-17525 [MEDIUM] Subversion vulnerabilities
Title: Subversion vulnerabilities
Summary: Several security issues were fixed in subversion.
Ace Olszowka discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to cause
svnserver to crash, resulting in a denial of service. This issue only
affected Ubuntu 18.04 LTS. (CVE-2018-11782)
Tomas Bortoli discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to cause
svnserver to crash, resulting in a denial of service. This issue only
affected Ubuntu 18.04 LTS. (CVE-2019-0203)
Thomas Åkesson discovered that Subversion incorrectly handled certain
inputs. An attacker could possibly use this issue to cause a denial of
service. (CVE-2020-17525)
Instructions: In ge
CISA ICS
Yokogawa CENTUM and ProSafe-RS
cisa_ics·2022-05-03·CVSS 5.0
[MEDIUM] Yokogawa CENTUM and ProSafe-RS
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Yokogawa CENTUM and ProSafe-RS
Last RevisedMay 03, 2022
Alert CodeICSA-22-123-01
## 1. EXECUTIVE SUMMARY
- CVSS v3 7.5
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Yokogawa
- Equipment: CENTUM and ProSafe-RS
- Vulnerabilities: OS Command Injection, Improper Authentication, NULL Pointer Dereference, Improper Input Validation, Resource Management Errors
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities may allow leakage/tampering of data, cause a denial-of-service condition, or allow a local attacker to execute arbitrary programs.
#
Ubuntu
Subversion vulnerabilities
vendor_ubuntu·2019-07-31·CVSS 6.5
CVE-2018-11782 [MEDIUM] Subversion vulnerabilities
Title: Subversion vulnerabilities
Summary: Subversion could be made to crash if it received specially crafted network
traffic.
USN-4082-1 fixed several vulnerabilities in Subversion. This update provides
the corresponding update for Ubuntu 12.04 ESM.
Original advisory details:
Ace Olszowka discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to
cause svnserver to crash, resulting in a denial of service.
(CVE-2018-11782)
Tomas Bortoli discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to
cause svnserver to crash, resulting in a denial of service. (CVE-2019-0203)
Instructions: In general, a standard system update will make all the necessary changes
Ubuntu
Subversion vulnerabilities
vendor_ubuntu·2019-07-31·CVSS 6.5
CVE-2018-11782 [MEDIUM] Subversion vulnerabilities
Title: Subversion vulnerabilities
Summary: Subversion could be made to crash if it received specially crafted network
traffic.
Ace Olszowka discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to
cause svnserver to crash, resulting in a denial of service.
(CVE-2018-11782)
Tomas Bortoli discovered that Subversion incorrectly handled certain
svnserve requests. A remote attacker could possibly use this issue to
cause svnserver to crash, resulting in a denial of service. (CVE-2019-0203)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev'
vendor_redhat·2019-07-31·CVSS 6.5
CVE-2018-11782 [MEDIUM] CWE-617 subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev'
subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev'
In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a well-formed read-only request produces a particular answer. This can lead to disruption for users of the server.
Statement: An authenticated user can cause subversion server (svnserve) process to crash by sending a well-formed read-only request which produces a particular answer. Exploitation results in denial of service by crashing an svnserve process. The impact of this differs depending on how svnserve is launched, including the different run modes selected by options such as "svnserve -d", "svnserve -T -d", "svnserve -t", and "svnserve -i". mod_dav_svn is not affected by this fla
Debian
CVE-2018-11782: subversion - In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subver...
vendor_debian·2018·CVSS 6.5
CVE-2018-11782 [MEDIUM] CVE-2018-11782: subversion - In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subver...
In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a well-formed read-only request produces a particular answer. This can lead to disruption for users of the server.
Scope: local
bookworm: resolved (fixed in 1.10.6-1)
bullseye: resolved (fixed in 1.10.6-1)
forky: resolved (fixed in 1.10.6-1)
sid: resolved (fixed in 1.10.6-1)
trixie: resolved (fixed in 1.10.6-1)
Apache
Apache subversion: CVE-2018-11782
vendor_apache·CVSS 6.5
CVE-2018-11782 [MEDIUM] Apache subversion: CVE-2018-11782
Apache subversion: CVE-2018-11782
-advisory.txt [ PGP ] 1.9.0-1.9.10, 1.10.0-1.10.4, 1.11.0-1.11.1, 1.12.0 Remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev'.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-11782 subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev' [fedora-all]
bugzilla·2019-08-01·CVSS 6.5
CVE-2018-11782 [MEDIUM] CVE-2018-11782 subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev' [fedora-all]
CVE-2018-11782 subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev' [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affe
Bugzilla
CVE-2018-11782 subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev'
bugzilla·2019-07-25·CVSS 6.5
CVE-2018-11782 [MEDIUM] CVE-2018-11782 subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev'
CVE-2018-11782 subversion: remotely triggerable DoS vulnerability in svnserve 'get-deleted-rev'
Subversion's svnserve server process may exit when a well-formed read-only request produces a particular answer. This can lead to disruption for users of the server.
Subversion svn:// connections, including svn+ssh:// and svn+://, use a custom network protocol [1] with Lisp-like syntax. The code implementing the protocol has dedicated codepaths for serialization of revision numbers into protocol integers. A particular client query could cause the server to attempt to reply with a revision number whose value is the invalid revision number constant `SVN_INVALID_REVNUM`, thereby triggering an assertion failure in the the serialization layer.
Reference:
1. https://svn.apache.org/repos/asf/subver
2019-09-26
Published