CVE-2022-24070
published 2022-04-12CVE-2022-24070: Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory…
PriorityP346high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
9.25%
94.8th percentile
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | subversion | — | — |
| apache | subversion | >= 0 < 1.14.1-3+deb11u1 | 1.14.1-3+deb11u1 |
| apache | subversion | >= 0 < 1.14.2-1 | 1.14.2-1 |
| apache | subversion | >= 0 < 1.14.2-1 | 1.14.2-1 |
| apache | subversion | >= 0 < 1.14.2-1 | 1.14.2-1 |
| apache | subversion | >= 0 < 1.13.0-3ubuntu0.1 | 1.13.0-3ubuntu0.1 |
| apache | subversion | >= 0 < 1.14.1-3ubuntu0.22.04.1 | 1.14.1-3ubuntu0.22.04.1 |
| apache | subversion | >= 1.10.0 < 1.10.8 | 1.10.8 |
| apache | subversion | >= 1.14.0 < 1.14.2 | 1.14.2 |
| apache_software_foundation | apache_subversion | — | — |
| apple | macos | >= 12.0 < 12.5 | 12.5 |
| apple | macos_monterey | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | subversion | < subversion 1.14.2-1 (bookworm) | subversion 1.14.2-1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| msrc | cbl2_subversion_1.14.2-1_on_cbl_mariner_2.0 | — | — |
| msrc | cm1_subversion_1.14.0-5_on_cbl_mariner_1.0 | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.5HIGH
vendor_apache7.5HIGH
vendor_debian7.5HIGH
vendor_msrc7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2022-24070: macOS Monterey 12.5
vendor_apple·2022-07-20·CVSS 7.5
CVE-2022-24070 [HIGH] CVE-2022-24070: macOS Monterey 12.5
Apple Security Update: About the security content of macOS Monterey 12.5
Product: macOS Monterey
Version: 12.5
CVE: CVE-2022-24070
Component: Spotlight
Impact: An app may be able to gain root privileges
Description: This issue was addressed with improved checks.
Ubuntu
Subversion vulnerabilities
vendor_ubuntu·2022-05-27·CVSS 4.3
CVE-2021-28544 [MEDIUM] Subversion vulnerabilities
Title: Subversion vulnerabilities
Summary: Several security issues were fixed in subversion.
Evgeny Kotkov discovered that subversion servers did not properly follow
path-based authorization rules in certain cases. An attacker could
potentially use this issue to retrieve information about private paths.
(CVE-2021-28544)
Thomas Weißschuh discovered that subversion servers did not properly handle
memory in certain configurations. A remote attacker could potentially use
this issue to cause a denial of service or other unspecified impact.
(CVE-2022-24070)
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
Subversion vulnerabilities
vendor_ubuntu·2022-04-12·CVSS 4.3
CVE-2021-28544 [MEDIUM] Subversion vulnerabilities
Title: Subversion vulnerabilities
Summary: Several security issues were fixed in Subversion.
Evgeny Kotkov discovered that Subversion servers did not properly follow
path-based authorization rules in certain cases. An attacker could
potentially use this issue to retrieve information about private paths.
(CVE-2021-28544)
Thomas Weißschuh discovered that Subversion servers did not properly handle
memory in certain configurations. A remote attacker could potentially use
this issue to cause a denial of service or other unspecified impact.
(CVE-2022-24070)
Instructions: In general, a standard system update will make all the necessary changes.
Microsoft
Apache Subversion mod_dav_svn is vulnerable to memory corruption
vendor_msrc·2022-04-12·CVSS 7.5
CVE-2022-24070 [HIGH] CWE-416 Apache Subversion mod_dav_svn is vulnerable to memory corruption
Apache Subversion mod_dav_svn is vulnerable to memory corruption
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
apache: apache
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference: ht
Debian
CVE-2022-24070: subversion - Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up pa...
vendor_debian·2022·CVSS 7.5
CVE-2022-24070 [HIGH] CVE-2022-24070: subversion - Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up pa...
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.
Scope: local
bookworm: resolved (fixed in 1.14.2-1)
bullseye: resolved (fixed in 1.14.1-3+deb11u1)
forky: resolved (fixed in 1.14.2-1)
sid: resolved (fixed in 1.14.2-1)
trixie: resolved (fixed in 1.14.2-1)
Red Hat
subversion: Subversion's mod_dav_svn is vulnerable to memory corruption
vendor_redhat·2021-11-04·CVSS 7.5
CVE-2022-24070 [HIGH] CWE-416 subversion: Subversion's mod_dav_svn is vulnerable to memory corruption
subversion: Subversion's mod_dav_svn is vulnerable to memory corruption
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.
A use-after-free vulnerability was found in Subversion in the mod_dav_svn Apache HTTP server (HTTPd) module. While looking up path-based authorization (authz) rules, multiple calls to the post_config hook can invalidate cached pointers to object-pools, which Subversion subsequently uses. This issue crashes the single HTTPd worker thread or the entire HTTPd server process, depending on the configuration of th
Apache
Apache subversion: CVE-2022-24070
vendor_apache·CVSS 7.5
CVE-2022-24070 [HIGH] Apache subversion: CVE-2022-24070
Apache subversion: CVE-2022-24070
-advisory.txt [ PGP ] 1.10.0-1.10.7, 1.14.0-1.14.1 mod_dav_svn is vulnerable to memory corruption
OSV
subversion vulnerabilities
osv·2022-05-27·CVSS 4.3
CVE-2021-28544 [MEDIUM] subversion vulnerabilities
subversion vulnerabilities
Evgeny Kotkov discovered that subversion servers did not properly follow
path-based authorization rules in certain cases. An attacker could
potentially use this issue to retrieve information about private paths.
(CVE-2021-28544)
Thomas Weißschuh discovered that subversion servers did not properly handle
memory in certain configurations. A remote attacker could potentially use
this issue to cause a denial of service or other unspecified impact.
(CVE-2022-24070)
GHSA
GHSA-c3j6-9rv7-vmqq: Subversion's mod_dav_svn is vulnerable to memory corruption
ghsa_unreviewed·2022-04-13
CVE-2022-24070 [HIGH] CWE-416 GHSA-c3j6-9rv7-vmqq: Subversion's mod_dav_svn is vulnerable to memory corruption
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.
OSV
CVE-2022-24070: Subversion's mod_dav_svn is vulnerable to memory corruption
osv·2022-04-12·CVSS 7.5
CVE-2022-24070 [HIGH] CVE-2022-24070: Subversion's mod_dav_svn is vulnerable to memory corruption
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.
OSV
subversion vulnerabilities
osv·2022-04-12·CVSS 4.3
CVE-2021-28544 [MEDIUM] subversion vulnerabilities
subversion vulnerabilities
Evgeny Kotkov discovered that Subversion servers did not properly follow
path-based authorization rules in certain cases. An attacker could
potentially use this issue to retrieve information about private paths.
(CVE-2021-28544)
Thomas Weißschuh discovered that Subversion servers did not properly handle
memory in certain configurations. A remote attacker could potentially use
this issue to cause a denial of service or other unspecified impact.
(CVE-2022-24070)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2022/Jul/18https://bz.apache.org/bugzilla/show_bug.cgi?id=65861https://cwiki.apache.org/confluence/display/HTTPD/ModuleLifehttps://issues.apache.org/jira/browse/SVN-4880https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PZ4ARNGLMGYBKYDX2B7DRBNMF6EH3A6R/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YJPMCWCGWBN3QWCDVILWQWPC75RR67LT/https://support.apple.com/kb/HT213345https://www.debian.org/security/2022/dsa-5119http://seclists.org/fulldisclosure/2022/Jul/18https://bz.apache.org/bugzilla/show_bug.cgi?id=65861https://cwiki.apache.org/confluence/display/HTTPD/ModuleLifehttps://issues.apache.org/jira/browse/SVN-4880https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PZ4ARNGLMGYBKYDX2B7DRBNMF6EH3A6R/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YJPMCWCGWBN3QWCDVILWQWPC75RR67LT/https://support.apple.com/kb/HT213345https://www.debian.org/security/2022/dsa-5119
2022-04-12
Published