Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2022:4941

Опубликовано: 08 июн. 2022
Источник: rocky
Оценка: Important

Описание

Important: subversion:1.14 security update

Subversion (SVN) is a concurrent version control system which enables one or more users to collaborate in developing and maintaining a hierarchy of files and directories while keeping a history of all changes.

Security Fix(es):

  • subversion: Subversion's mod_dav_svn is vulnerable to memory corruption (CVE-2022-24070)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
libserfx86_649.module+el8.7.0+1065+42200b2elibserf-1.3.9-9.module+el8.7.0+1065+42200b2e.x86_64.rpm
mod_dav_svnx86_642.module+el8.7.0+1066+f8abeb19mod_dav_svn-1.14.1-2.module+el8.7.0+1066+f8abeb19.x86_64.rpm
python3-subversionx86_642.module+el8.7.0+1066+f8abeb19python3-subversion-1.14.1-2.module+el8.7.0+1066+f8abeb19.x86_64.rpm
subversion-gnomex86_642.module+el8.7.0+1066+f8abeb19subversion-gnome-1.14.1-2.module+el8.7.0+1066+f8abeb19.x86_64.rpm
subversionx86_642.module+el8.7.0+1066+f8abeb19subversion-1.14.1-2.module+el8.7.0+1066+f8abeb19.x86_64.rpm
subversion-develx86_642.module+el8.7.0+1066+f8abeb19subversion-devel-1.14.1-2.module+el8.7.0+1066+f8abeb19.x86_64.rpm
subversion-javahlnoarch2.module+el8.7.0+1066+f8abeb19subversion-javahl-1.14.1-2.module+el8.7.0+1066+f8abeb19.noarch.rpm
subversion-libsx86_642.module+el8.7.0+1066+f8abeb19subversion-libs-1.14.1-2.module+el8.7.0+1066+f8abeb19.x86_64.rpm
subversion-perlx86_642.module+el8.7.0+1066+f8abeb19subversion-perl-1.14.1-2.module+el8.7.0+1066+f8abeb19.x86_64.rpm
subversion-toolsx86_642.module+el8.7.0+1066+f8abeb19subversion-tools-1.14.1-2.module+el8.7.0+1066+f8abeb19.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.

CVSS3: 7.5
redhat
почти 4 года назад

Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.

CVSS3: 7.5
nvd
больше 3 лет назад

Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.

CVSS3: 7.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 3 лет назад

Subversion's mod_dav_svn is vulnerable to memory corruption. While loo ...