VYPR
Unrated severityNVD Advisory· Published May 2, 2013· Updated Apr 29, 2026

CVE-2013-1846

CVE-2013-1846

Description

The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a LOCK on an activity URL.

Affected products

32
  • Apache/Subversion29 versions
    cpe:2.3:a:apache:subversion:*:*:*:*:*:*:*:*+ 28 more
    • cpe:2.3:a:apache:subversion:*:*:*:*:*:*:*:*range: <=1.6.20
    • cpe:2.3:a:apache:subversion:1.6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.10:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.11:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.12:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.13:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.14:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.15:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.16:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.17:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.18:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.19:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.3:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.4:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.5:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.6:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.7:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.8:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.6.9:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.7.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.7.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.7.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.7.3:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.7.4:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.7.5:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.7.6:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:subversion:1.7.7:*:*:*:*:*:*:*
  • OpenSUSE/openSUSE3 versions
    cpe:2.3:o:opensuse:opensuse:12.1:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:opensuse:opensuse:12.1:*:*:*:*:*:*:*
    • cpe:2.3:o:opensuse:opensuse:12.2:*:*:*:*:*:*:*
    • cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

10

News mentions

0

No linked articles in our index yet.