Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-2168

Опубликовано: 05 мая 2016
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 4
CVSS3: 6.5

Описание

The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a crafted header in a (1) MOVE or (2) COPY request, involving an authorization check.

РелизСтатусПримечание
artful

not-affected

1.9.4-1ubuntu1
devel

not-affected

1.9.4-1ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1.8.8-1ubuntu3.3]]
esm-infra-legacy/xenial

released

1.9.3-2ubuntu1.1
esm-infra/xenial

released

1.9.3-2ubuntu1.1
precise

ignored

end of life
precise/esm

not-affected

1.6.17dfsg-3ubuntu3.7
trusty

released

1.8.8-1ubuntu3.3
trusty/esm

DNE

trusty was released [1.8.8-1ubuntu3.3]
upstream

released

1.9.4-1

Показывать по

EPSS

Процентиль: 97%
0.19628
Средний

4 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

redhat
больше 10 лет назад

The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a crafted header in a (1) MOVE or (2) COPY request, involving an authorization check.

CVSS3: 6.5
nvd
больше 10 лет назад

The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a crafted header in a (1) MOVE or (2) COPY request, involving an authorization check.

CVSS3: 6.5
debian
больше 10 лет назад

The req_check_access function in the mod_authz_svn module in the httpd ...

CVSS3: 6.5
github
больше 4 лет назад

The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a crafted header in a (1) MOVE or (2) COPY request, involving an authorization check.

suse-cvrf
больше 10 лет назад

Security update for subversion

EPSS

Процентиль: 97%
0.19628
Средний

4 Medium

CVSS2

6.5 Medium

CVSS3