rpm package
opensuse/subversion&distro=openSUSE Leap 15.0
pkg:rpm/opensuse/subversion&distro=openSUSE%20Leap%2015.0
Vulnerabilities (3)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2019-0203 | — | < 1.10.6-lp151.4.3.1 | 1.10.6-lp151.4.3.1 | Sep 26, 2019 | In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a client sends certain sequences of protocol commands. This can lead to disruption for users of the server. | ||
| CVE-2018-11782 | — | < 1.10.6-lp151.4.3.1 | 1.10.6-lp151.4.3.1 | Sep 26, 2019 | In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a well-formed read-only request produces a particular answer. This can lead to disruption for users of the server. | ||
| CVE-2018-11803 | — | < 1.10.0-lp150.2.3.1 | 1.10.0-lp150.2.3.1 | Feb 5, 2019 | Subversion's mod_dav_svn Apache HTTPD module versions 1.11.0 and 1.10.0 to 1.10.3 will crash after dereferencing an uninitialized pointer if the client omits the root path in a recursive directory listing operation. |
- CVE-2019-0203Sep 26, 2019affected < 1.10.6-lp151.4.3.1fixed 1.10.6-lp151.4.3.1
In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a client sends certain sequences of protocol commands. This can lead to disruption for users of the server.
- CVE-2018-11782Sep 26, 2019affected < 1.10.6-lp151.4.3.1fixed 1.10.6-lp151.4.3.1
In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a well-formed read-only request produces a particular answer. This can lead to disruption for users of the server.
- CVE-2018-11803Feb 5, 2019affected < 1.10.0-lp150.2.3.1fixed 1.10.0-lp150.2.3.1
Subversion's mod_dav_svn Apache HTTPD module versions 1.11.0 and 1.10.0 to 1.10.3 will crash after dereferencing an uninitialized pointer if the client omits the root path in a recursive directory listing operation.