Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-0202

Опубликовано: 31 мар. 2015
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows remote attackers to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes.

Отчет

Not vulnerable. This issue did not affect the versions of subversion as shipped with Red Hat Enterprise Linux 5, 6 and 7 as they did not include support for additional level of caching for the DAG nodes, which cause excessive memory use due to the cached nodes not being deallocated in a timely manner.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5subversionNot affected
Red Hat Enterprise Linux 6subversionNot affected
Red Hat Enterprise Linux 7subversionNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-770
https://bugzilla.redhat.com/show_bug.cgi?id=1205134subversion: (mod_dav_svn) remote denial of service with certain REPORT requests

EPSS

Процентиль: 84%
0.02082
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 11 лет назад

The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows remote attackers to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes.

nvd
почти 11 лет назад

The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows remote attackers to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes.

debian
почти 11 лет назад

The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows remot ...

github
больше 3 лет назад

The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows remote attackers to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes.

suse-cvrf
почти 11 лет назад

Security update for subversion

EPSS

Процентиль: 84%
0.02082
Низкий

5 Medium

CVSS2