MGASA-2014-0105
Dashboard / Vulnerabilities / MGASA-2014-0105
Summary: Updated subversion packages fix CVE-2014-0032
Details: Updated subversion packages fix security vulnerability: The mod_dav_svn module in Apache Subversion before 1.8.8, when SVNListParentPath is enabled, allows remote attackers to cause a denial of service (crash) via an OPTIONS request (CVE-2014-0032). The package has been updated to version 1.8.8, which fixes this issue, as well as several others.
References: https://advisories.mageia.org/MGASA-2014-0105.html, https://subversion.apache.org/security/CVE-2014-0032-advisory.txt, https://mail-archives.apache.org/mod_mbox/subversion-dev/201402.mbox/%[email protected]%3E, https://bugs.mageia.org/show_bug.cgi?id=12768.mga4
Affected packages
Package
Name: subversion
Purl: pkg:rpm/mageia/subversion?arch=source&distro=mageia-4
Affected ranges
Type: ECOSYSTEM
Events:
