Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-17525

Опубликовано: 17 мар. 2021
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 4.3
CVSS3: 7.5

Описание

Subversion's mod_authz_svn module will crash if the server is using in-repository authz rules with the AuthzSVNReposRelativeAccessFile option and a client sends a request for a non-existing repository URL. This can lead to disruption for users of the service. This issue was fixed in mod_dav_svn+mod_authz_svn servers 1.14.1 and mod_dav_svn+mod_authz_svn servers 1.10.7

РелизСтатусПримечание
bionic

released

1.9.7-4ubuntu1.1
devel

not-affected

1.14.1-1
esm-apps/bionic

released

1.9.7-4ubuntu1.1
esm-apps/focal

released

1.13.0-3ubuntu0.2
esm-apps/jammy

not-affected

1.14.1-1
esm-infra-legacy/trusty

DNE

esm-infra/xenial

released

1.9.3-2ubuntu1.3+esm1
focal

released

1.13.0-3ubuntu0.2
groovy

ignored

end of life
hirsute

not-affected

1.14.1-1

Показывать по

EPSS

Процентиль: 94%
0.12678
Средний

4.3 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
больше 4 лет назад

Subversion's mod_authz_svn module will crash if the server is using in-repository authz rules with the AuthzSVNReposRelativeAccessFile option and a client sends a request for a non-existing repository URL. This can lead to disruption for users of the service. This issue was fixed in mod_dav_svn+mod_authz_svn servers 1.14.1 and mod_dav_svn+mod_authz_svn servers 1.10.7

CVSS3: 7.5
nvd
больше 4 лет назад

Subversion's mod_authz_svn module will crash if the server is using in-repository authz rules with the AuthzSVNReposRelativeAccessFile option and a client sends a request for a non-existing repository URL. This can lead to disruption for users of the service. This issue was fixed in mod_dav_svn+mod_authz_svn servers 1.14.1 and mod_dav_svn+mod_authz_svn servers 1.10.7

CVSS3: 7.5
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 4 лет назад

Subversion's mod_authz_svn module will crash if the server is using in ...

suse-cvrf
больше 4 лет назад

Security update for subversion

EPSS

Процентиль: 94%
0.12678
Средний

4.3 Medium

CVSS2

7.5 High

CVSS3