DNA View

CVE-2015-0248

Low
Low Medium High Critical
CVSS Score
Published: Apr 08, 2015
Last Modified: Apr 12, 2025

Vulnerability Description

The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.

Known Affected Software

64 configuration(s) from 5 vendor(s)

subversion
Version:
1.8.4
CPE:
cpe:2.3:a:apache:subversion:1.8.4:*:*:*:*:*:*:*
subversion
Version:
1.8.9
CPE:
cpe:2.3:a:apache:subversion:1.8.9:*:*:*:*:*:*:*
subversion
Version:
1.8.8
CPE:
cpe:2.3:a:apache:subversion:1.8.8:*:*:*:*:*:*:*
subversion
Version:
1.6.1
CPE:
cpe:2.3:a:apache:subversion:1.6.1:*:*:*:*:*:*:*
subversion
Version:
1.6.14
CPE:
cpe:2.3:a:apache:subversion:1.6.14:*:*:*:*:*:*:*
subversion
Version:
1.6.0
CPE:
cpe:2.3:a:apache:subversion:1.6.0:*:*:*:*:*:*:*
subversion
Version:
1.7.5
CPE:
cpe:2.3:a:apache:subversion:1.7.5:*:*:*:*:*:*:*
subversion
Version:
1.8.2
CPE:
cpe:2.3:a:apache:subversion:1.8.2:*:*:*:*:*:*:*
subversion
Version:
1.7.19
CPE:
cpe:2.3:a:apache:subversion:1.7.19:*:*:*:*:*:*:*
subversion
Version:
1.6.9
CPE:
cpe:2.3:a:apache:subversion:1.6.9:*:*:*:*:*:*:*
subversion
Version:
1.6.3
CPE:
cpe:2.3:a:apache:subversion:1.6.3:*:*:*:*:*:*:*
subversion
Version:
1.6.4
CPE:
cpe:2.3:a:apache:subversion:1.6.4:*:*:*:*:*:*:*
subversion
Version:
1.7.11
CPE:
cpe:2.3:a:apache:subversion:1.7.11:*:*:*:*:*:*:*
subversion
Version:
1.6.6
CPE:
cpe:2.3:a:apache:subversion:1.6.6:*:*:*:*:*:*:*
subversion
Version:
1.7.13
CPE:
cpe:2.3:a:apache:subversion:1.7.13:*:*:*:*:*:*:*
subversion
Version:
1.8.5
CPE:
cpe:2.3:a:apache:subversion:1.8.5:*:*:*:*:*:*:*
subversion
Version:
1.8.0
CPE:
cpe:2.3:a:apache:subversion:1.8.0:*:*:*:*:*:*:*
subversion
Version:
1.6.10
CPE:
cpe:2.3:a:apache:subversion:1.6.10:*:*:*:*:*:*:*
subversion
Version:
1.7.17
CPE:
cpe:2.3:a:apache:subversion:1.7.17:*:*:*:*:*:*:*
subversion
Version:
1.6.19
CPE:
cpe:2.3:a:apache:subversion:1.6.19:*:*:*:*:*:*:*
subversion
Version:
1.6.11
CPE:
cpe:2.3:a:apache:subversion:1.6.11:*:*:*:*:*:*:*
subversion
Version:
1.8.6
CPE:
cpe:2.3:a:apache:subversion:1.8.6:*:*:*:*:*:*:*
subversion
Version:
1.8.10
CPE:
cpe:2.3:a:apache:subversion:1.8.10:*:*:*:*:*:*:*
subversion
Version:
1.6.17
CPE:
cpe:2.3:a:apache:subversion:1.6.17:*:*:*:*:*:*:*
subversion
Version:
1.6.23
CPE:
cpe:2.3:a:apache:subversion:1.6.23:*:*:*:*:*:*:*
subversion
Version:
1.6.15
CPE:
cpe:2.3:a:apache:subversion:1.6.15:*:*:*:*:*:*:*
subversion
Version:
1.6.8
CPE:
cpe:2.3:a:apache:subversion:1.6.8:*:*:*:*:*:*:*
subversion
Version:
1.7.8
CPE:
cpe:2.3:a:apache:subversion:1.7.8:*:*:*:*:*:*:*
subversion
Version:
1.6.7
CPE:
cpe:2.3:a:apache:subversion:1.6.7:*:*:*:*:*:*:*
subversion
Version:
1.8.3
CPE:
cpe:2.3:a:apache:subversion:1.8.3:*:*:*:*:*:*:*
subversion
Version:
1.8.11
CPE:
cpe:2.3:a:apache:subversion:1.8.11:*:*:*:*:*:*:*
subversion
Version:
1.6.5
CPE:
cpe:2.3:a:apache:subversion:1.6.5:*:*:*:*:*:*:*
subversion
Version:
1.7.0
CPE:
cpe:2.3:a:apache:subversion:1.7.0:*:*:*:*:*:*:*
subversion
Version:
1.6.2
CPE:
cpe:2.3:a:apache:subversion:1.6.2:*:*:*:*:*:*:*
subversion
Version:
1.7.12
CPE:
cpe:2.3:a:apache:subversion:1.7.12:*:*:*:*:*:*:*
subversion
Version:
1.7.14
CPE:
cpe:2.3:a:apache:subversion:1.7.14:*:*:*:*:*:*:*
subversion
Version:
1.6.20
CPE:
cpe:2.3:a:apache:subversion:1.6.20:*:*:*:*:*:*:*
subversion
Version:
1.8.7
CPE:
cpe:2.3:a:apache:subversion:1.8.7:*:*:*:*:*:*:*
subversion
Version:
1.7.10
CPE:
cpe:2.3:a:apache:subversion:1.7.10:*:*:*:*:*:*:*
subversion
Version:
1.6.13
CPE:
cpe:2.3:a:apache:subversion:1.6.13:*:*:*:*:*:*:*
subversion
Version:
1.7.2
CPE:
cpe:2.3:a:apache:subversion:1.7.2:*:*:*:*:*:*:*
subversion
Version:
1.7.4
CPE:
cpe:2.3:a:apache:subversion:1.7.4:*:*:*:*:*:*:*
subversion
Version:
1.7.15
CPE:
cpe:2.3:a:apache:subversion:1.7.15:*:*:*:*:*:*:*
subversion
Version:
1.6.12
CPE:
cpe:2.3:a:apache:subversion:1.6.12:*:*:*:*:*:*:*
subversion
Version:
1.7.3
CPE:
cpe:2.3:a:apache:subversion:1.7.3:*:*:*:*:*:*:*
subversion
Version:
1.7.18
CPE:
cpe:2.3:a:apache:subversion:1.7.18:*:*:*:*:*:*:*
subversion
Version:
1.8.1
CPE:
cpe:2.3:a:apache:subversion:1.8.1:*:*:*:*:*:*:*
subversion
Version:
1.6.21
CPE:
cpe:2.3:a:apache:subversion:1.6.21:*:*:*:*:*:*:*
subversion
Version:
1.7.16
CPE:
cpe:2.3:a:apache:subversion:1.7.16:*:*:*:*:*:*:*
subversion
Version:
1.6.16
CPE:
cpe:2.3:a:apache:subversion:1.6.16:*:*:*:*:*:*:*
subversion
Version:
1.7.6
CPE:
cpe:2.3:a:apache:subversion:1.7.6:*:*:*:*:*:*:*
subversion
Version:
1.6.18
CPE:
cpe:2.3:a:apache:subversion:1.6.18:*:*:*:*:*:*:*
subversion
Version:
1.7.7
CPE:
cpe:2.3:a:apache:subversion:1.7.7:*:*:*:*:*:*:*
subversion
Version:
1.7.1
CPE:
cpe:2.3:a:apache:subversion:1.7.1:*:*:*:*:*:*:*
subversion
Version:
1.7.9
CPE:
cpe:2.3:a:apache:subversion:1.7.9:*:*:*:*:*:*:*
xcode
Version:
7.0
CPE:
cpe:2.3:a:apple:xcode:7.0:*:*:*:*:*:*:*
opensuse
Version:
13.2
CPE:
cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*
opensuse
Version:
13.1
CPE:
cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*
solaris
Version:
11.3
CPE:
cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:*
enterprise_linux_hpc_node
Version:
6
CPE:
cpe:2.3:o:redhat:enterprise_linux_hpc_node:6:*:*:*:*:*:*:*
enterprise_linux_server
Version:
6.0
CPE:
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:x86:*
enterprise_linux_server_eus
Version:
6.7.z
CPE:
cpe:2.3:o:redhat:enterprise_linux_server_eus:6.7.z:*:*:*:*:*:*:*
enterprise_linux_desktop
Version:
6.0
CPE:
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:x64:*
enterprise_linux_workstation
Version:
6.0
CPE:
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:x86:*
This vulnerability affects 64 software configuration(s). Ensure you patch all affected systems.

References & Resources

Severity Details

out of 10.0
Low

Weakness Type (CWE)

CWE-399

Key Information

Published Date
April 08, 2015