Описание
ELSA-2021-0507: subversion:1.10 security update (IMPORTANT)
subversion [1.10.2-4]
- add security fix for CVE-2020-17525
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
Module subversion:1.1 is enabled
libserf
1.3.9-9.module+el8.3.0+7671+a87d5147
mod_dav_svn
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-devel
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-gnome
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-javahl
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-libs
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-perl
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-tools
1.10.2-4.module+el8.3.0+9645+c2a98c55
utf8proc
2.1.1-5.module+el8.3.0+7671+a87d5147
Oracle Linux x86_64
Module subversion:1.1 is enabled
libserf
1.3.9-9.module+el8.3.0+7671+a87d5147
mod_dav_svn
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-devel
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-gnome
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-javahl
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-libs
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-perl
1.10.2-4.module+el8.3.0+9645+c2a98c55
subversion-tools
1.10.2-4.module+el8.3.0+9645+c2a98c55
utf8proc
2.1.1-5.module+el8.3.0+7671+a87d5147
Связанные CVE
Связанные уязвимости
Subversion's mod_authz_svn module will crash if the server is using in-repository authz rules with the AuthzSVNReposRelativeAccessFile option and a client sends a request for a non-existing repository URL. This can lead to disruption for users of the service. This issue was fixed in mod_dav_svn+mod_authz_svn servers 1.14.1 and mod_dav_svn+mod_authz_svn servers 1.10.7
Subversion's mod_authz_svn module will crash if the server is using in-repository authz rules with the AuthzSVNReposRelativeAccessFile option and a client sends a request for a non-existing repository URL. This can lead to disruption for users of the service. This issue was fixed in mod_dav_svn+mod_authz_svn servers 1.14.1 and mod_dav_svn+mod_authz_svn servers 1.10.7
Subversion's mod_authz_svn module will crash if the server is using in-repository authz rules with the AuthzSVNReposRelativeAccessFile option and a client sends a request for a non-existing repository URL. This can lead to disruption for users of the service. This issue was fixed in mod_dav_svn+mod_authz_svn servers 1.14.1 and mod_dav_svn+mod_authz_svn servers 1.10.7
Subversion's mod_authz_svn module will crash if the server is using in ...