Subversion's mod_dav_svn Apache HTTPD module versions 1.11.0 and 1.10.0 to 1.10.3 will crash after dereferencing an uninitialized pointer if the client omits the root path in a recursive directory listing operation.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/106770 | Broken Link Third Party Advisory VDB Entry |
https://lists.apache.org/thread.html/fa71074862373c142d264534385f8ea5d8d6b80d27f36f3c46f55003%40%3Cdev.subversion.apache.org%3E | |
https://security.gentoo.org/glsa/201904-08 | Third Party Advisory |
https://usn.ubuntu.com/3869-1/ | Third Party Advisory |
http://www.securityfocus.com/bid/106770 | Broken Link Third Party Advisory VDB Entry |
https://lists.apache.org/thread.html/fa71074862373c142d264534385f8ea5d8d6b80d27f36f3c46f55003%40%3Cdev.subversion.apache.org%3E | |
https://security.gentoo.org/glsa/201904-08 | Third Party Advisory |
https://usn.ubuntu.com/3869-1/ | Third Party Advisory |
Configurations
History
21 Nov 2024, 03:44
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/106770 - Broken Link, Third Party Advisory, VDB Entry | |
References | () https://lists.apache.org/thread.html/fa71074862373c142d264534385f8ea5d8d6b80d27f36f3c46f55003%40%3Cdev.subversion.apache.org%3E - | |
References | () https://security.gentoo.org/glsa/201904-08 - Third Party Advisory | |
References | () https://usn.ubuntu.com/3869-1/ - Third Party Advisory |
07 Nov 2023, 02:51
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2019-02-05 17:29
Updated : 2024-11-21 03:44
NVD link : CVE-2018-11803
Mitre link : CVE-2018-11803
CVE.ORG link : CVE-2018-11803
JSON object : View
Products Affected
apache
- subversion
canonical
- ubuntu_linux
CWE
CWE-824
Access of Uninitialized Pointer