7.8
CVSSv2

CVE-2015-0202

Published: 08/04/2015 Updated: 30/10/2018
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The mod_dav_svn server in Subversion 1.8.0 up to and including 1.8.11 allows remote malicious users to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes.

Vulnerable Product Search on Vulmon Subscribe to Product

apache subversion 1.8.0

apache subversion 1.8.8

apache subversion 1.8.9

apache subversion 1.8.3

apache subversion 1.8.4

apache subversion 1.8.5

apache subversion 1.8.1

apache subversion 1.8.2

apache subversion 1.8.10

apache subversion 1.8.11

apache subversion 1.8.6

apache subversion 1.8.7

opensuse opensuse 13.1

opensuse opensuse 13.2

Vendor Advisories

Several security issues were fixed in Subversion ...
The mod_dav_svn server in Subversion 180 through 1811 allows remote attackers to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes (CVE-2015-0202) An assertion failure flaw was found in the way the SVN server processed certain requests with dynamically eva ...
The mod_dav_svn server in Subversion 180 through 1811 allows remote attackers to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes ...