Related Vulnerabilities: CVE-2018-11803  

A denial of service has been found in subversion versions prior to 1.11.1, allowing a malicious SVN client to crash a remote server using mod_dav_svn by omitting the root path from a recursive directory listing request, causing mod_dav_svn to dereference an uninitialized pointer variable and crash the httpd worker process handling the request.

Severity High

Remote Yes

Type Denial of service

Description

A denial of service has been found in subversion versions prior to 1.11.1, allowing a malicious SVN client to crash a remote server using mod_dav_svn by omitting the root path from a recursive directory listing request, causing mod_dav_svn to dereference an uninitialized pointer variable and crash the httpd worker process handling the request.

AVG-858 subversion 1.11.0-2 1.11.1-1 High Fixed

28 Jan 2019 ASA-201901-17 AVG-858 subversion High denial of service

https://subversion.apache.org/security/CVE-2018-11803-advisory.txt