4
CVSSv2

CVE-2013-4131

Published: 31/07/2013 Updated: 19/09/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 up to and including 1.7.10 and 1.8.x prior to 1.8.1 allows remote authenticated users to cause a denial of service (assertion failure or out-of-bounds read) via a certain (1) COPY, (2) DELETE, or (3) MOVE request against a revision root.

Vulnerable Product Search on Vulmon Subscribe to Product

apache subversion 1.7.1

apache subversion 1.7.2

apache subversion 1.7.10

apache subversion 1.8.0

apache subversion 1.7.3

apache subversion 1.7.4

apache subversion 1.7.5

apache subversion 1.7.6

apache subversion 1.7.0

apache subversion 1.7.7

apache subversion 1.7.8

apache subversion 1.7.9

Vendor Advisories

Debian Bug report logs - #717794 subversion: CVE-2013-4131 Package: subversion; Maintainer for subversion is James McCoy <jamessan@debianorg>; Source for subversion is src:subversion (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Thu, 25 Jul 2013 07:51:02 UTC Severity: important Tags: ...
Debian Bug report logs - #721542 subversion: CVE-2013-4277: local privilege escalation vulnerability via symlink attack Package: subversion; Maintainer for subversion is James McCoy <jamessan@debianorg>; Source for subversion is src:subversion (PTS, buildd, popcon) Reported by: Salvatore Bonaccorso <carnil@debianorg> ...
The mod_dav_svn Apache HTTPD server module in Subversion 170 through 1710 and 18x before 181 allows remote authenticated users to cause a denial of service (assertion failure or out-of-bounds read) via a certain (1) COPY, (2) DELETE, or (3) MOVE request against a revision root ...
The mod_dav_svn Apache HTTPD server module in Subversion 170 through 1710 and 18x before 181 allows remote authenticated users to cause a denial of service (assertion failure or out-of-bounds read) via a certain (1) COPY, (2) DELETE, or (3) MOVE request against a revision root ...