5.5
CVSSv2

CVE-2013-1968

Published: 31/07/2013 Updated: 30/10/2018
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:N/I:P/A:P

Vulnerability Summary

Subversion prior to 1.6.23 and 1.7.x prior to 1.7.10 allows remote authenticated users to cause a denial of service (FSFS repository corruption) via a newline character in a file name.

Vulnerable Product Search on Vulmon Subscribe to Product

apache subversion 1.6.2

apache subversion 1.6.1

apache subversion 1.6.10

apache subversion 1.6.9

apache subversion 1.6.20

apache subversion 1.6.19

apache subversion 1.6.6

apache subversion 1.6.5

apache subversion 1.6.13

apache subversion 1.6.12

apache subversion 1.6.18

apache subversion 1.6.15

apache subversion 1.6.3

apache subversion 1.6.4

apache subversion 1.6.11

collabnet subversion 1.6.17

apache subversion 1.6.17

apache subversion

apache subversion 1.6.14

apache subversion 1.6.0

apache subversion 1.6.7

apache subversion 1.6.8

apache subversion 1.6.16

apache subversion 1.7.6

apache subversion 1.7.0

apache subversion 1.7.9

apache subversion 1.7.7

apache subversion 1.7.2

apache subversion 1.7.1

apache subversion 1.7.4

apache subversion 1.7.3

apache subversion 1.7.5

apache subversion 1.7.8

canonical ubuntu linux 13.04

canonical ubuntu linux 12.10

canonical ubuntu linux 12.04

opensuse opensuse 11.4

Vendor Advisories

Several security issues were fixed in Subversion ...
Several vulnerabilities were discovered in Subversion, a version control system The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2013-1968 Subversion repositories with the FSFS repository data store format can be corrupted by newline characters in filenames A remote attacker with a malicious cli ...
Debian Bug report logs - #717794 subversion: CVE-2013-4131 Package: subversion; Maintainer for subversion is James McCoy <jamessan@debianorg>; Source for subversion is src:subversion (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Thu, 25 Jul 2013 07:51:02 UTC Severity: important Tags: ...
Debian Bug report logs - #721542 subversion: CVE-2013-4277: local privilege escalation vulnerability via symlink attack Package: subversion; Maintainer for subversion is James McCoy <jamessan@debianorg>; Source for subversion is src:subversion (PTS, buildd, popcon) Reported by: Salvatore Bonaccorso <carnil@debianorg> ...
Debian Bug report logs - #711033 CVE-2013-2112 CVE-2013-1968 Package: subversion; Maintainer for subversion is James McCoy <jamessan@debianorg>; Source for subversion is src:subversion (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Tue, 4 Jun 2013 07:42:01 UTC Severity: grave Tags: pa ...
Subversion before 1623 and 17x before 1710 allows remote authenticated users to cause a denial of service (FSFS repository corruption) via a newline character in a file name ...