IM
IronMonkey Threat Research

CVE-2015-0248 MEDIUM

Published: 2015-04-08 | Last Modified: 2026-06-17 | Status: Modified

Description

The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.

Additional Descriptions (1)

Los servidores (1) mod_dav_svn yd (2) svnserve en Subversion 1.6.0 hasta 1.7.19 y 1.8.0 hasta 1.8.11 permiten a atacantes remotos causar una denegación de servicio (fallo de aserción y abortar) a través de combinaciones de parámetros relacionadas con números de revisión evaluados dinámicamente.

CVSS Metrics

Base Score: 5.0 (MEDIUM)

AV:N/AC:L/Au:N/C:N/I:N/A:P

Access VectorNETWORK
Access ComplexityLOW
AuthenticationNONE
Confidentiality ImpactNONE
Integrity ImpactNONE
Availability ImpactPARTIAL

Source: [email protected]

Type: Primary

Exploitability Score: 10.0

Impact Score: 2.9

Weaknesses

Source Type Description
[email protected] Primary
en CWE-399

Affected Products

Vendor Product Version Update Type
apache subversion 1.6.0 <built-in method update of dict object at 0x7e60a88afe80> Application
apache subversion 1.6.1 <built-in method update of dict object at 0x7e611239db40> Application
apache subversion 1.6.2 <built-in method update of dict object at 0x7e613cd84800> Application
apache subversion 1.6.3 <built-in method update of dict object at 0x7e6112395240> Application
apache subversion 1.6.4 <built-in method update of dict object at 0x7e60a88aec40> Application
apache subversion 1.6.5 <built-in method update of dict object at 0x7e60a88ad440> Application
apache subversion 1.6.6 <built-in method update of dict object at 0x7e6110cf7f80> Application
apache subversion 1.6.7 <built-in method update of dict object at 0x7e611239e680> Application
apache subversion 1.6.8 <built-in method update of dict object at 0x7e6110cf4940> Application
apache subversion 1.6.9 <built-in method update of dict object at 0x7e611232c140> Application
apache subversion 1.6.10 <built-in method update of dict object at 0x7e60ba2a55c0> Application
apache subversion 1.6.11 <built-in method update of dict object at 0x7e60a88ac580> Application
apache subversion 1.6.12 <built-in method update of dict object at 0x7e60ba2a7e80> Application
apache subversion 1.6.13 <built-in method update of dict object at 0x7e611239d040> Application
apache subversion 1.6.14 <built-in method update of dict object at 0x7e611206e040> Application
apache subversion 1.6.15 <built-in method update of dict object at 0x7e60a88af680> Application
apache subversion 1.6.16 <built-in method update of dict object at 0x7e6112cbcf40> Application
apache subversion 1.6.17 <built-in method update of dict object at 0x7e611239da80> Application
apache subversion 1.6.18 <built-in method update of dict object at 0x7e613410e5c0> Application
apache subversion 1.6.19 <built-in method update of dict object at 0x7e611232c200> Application
apache subversion 1.6.20 <built-in method update of dict object at 0x7e613c4cf4c0> Application
apache subversion 1.6.21 <built-in method update of dict object at 0x7e60a88ad280> Application
apache subversion 1.6.23 <built-in method update of dict object at 0x7e60a88aef00> Application
apache subversion 1.7.0 <built-in method update of dict object at 0x7e6110cf4f00> Application
apache subversion 1.7.1 <built-in method update of dict object at 0x7e6112373c40> Application
apache subversion 1.7.2 <built-in method update of dict object at 0x7e60a88acf00> Application
apache subversion 1.7.3 <built-in method update of dict object at 0x7e61123952c0> Application
apache subversion 1.7.4 <built-in method update of dict object at 0x7e6112373f40> Application
apache subversion 1.7.5 <built-in method update of dict object at 0x7e60a88af940> Application
apache subversion 1.7.6 <built-in method update of dict object at 0x7e60a88ad4c0> Application
apache subversion 1.7.7 <built-in method update of dict object at 0x7e611206ee80> Application
apache subversion 1.7.8 <built-in method update of dict object at 0x7e60a88ae080> Application
apache subversion 1.7.9 <built-in method update of dict object at 0x7e60a88ad0c0> Application
apache subversion 1.7.10 <built-in method update of dict object at 0x7e60a88ac140> Application
apache subversion 1.7.11 <built-in method update of dict object at 0x7e60a88ac500> Application
apache subversion 1.7.12 <built-in method update of dict object at 0x7e60a88ae040> Application
apache subversion 1.7.13 <built-in method update of dict object at 0x7e60a88ad680> Application
apache subversion 1.7.14 <built-in method update of dict object at 0x7e60a88ae780> Application
apache subversion 1.7.15 <built-in method update of dict object at 0x7e60a88adb00> Application
apache subversion 1.7.16 <built-in method update of dict object at 0x7e60a88adcc0> Application
apache subversion 1.7.17 <built-in method update of dict object at 0x7e60a88af700> Application
apache subversion 1.7.18 <built-in method update of dict object at 0x7e60a88aed00> Application
apache subversion 1.7.19 <built-in method update of dict object at 0x7e60a88adac0> Application
apache subversion 1.8.0 <built-in method update of dict object at 0x7e60a88adf80> Application
apache subversion 1.8.1 <built-in method update of dict object at 0x7e60a888c100> Application
apache subversion 1.8.2 <built-in method update of dict object at 0x7e60a888c6c0> Application
apache subversion 1.8.3 <built-in method update of dict object at 0x7e60a888f7c0> Application
apache subversion 1.8.4 <built-in method update of dict object at 0x7e60a888e0c0> Application
apache subversion 1.8.5 <built-in method update of dict object at 0x7e60a888f4c0> Application
apache subversion 1.8.6 <built-in method update of dict object at 0x7e60a888d7c0> Application
apache subversion 1.8.7 <built-in method update of dict object at 0x7e60a888ff40> Application
apache subversion 1.8.8 <built-in method update of dict object at 0x7e60a888c8c0> Application
apache subversion 1.8.9 <built-in method update of dict object at 0x7e60a888cb40> Application
apache subversion 1.8.10 <built-in method update of dict object at 0x7e60a888e840> Application
apache subversion 1.8.11 <built-in method update of dict object at 0x7e60a8a61000> Application
opensuse opensuse 13.1 <built-in method update of dict object at 0x7e60e8341d80> Operating System
opensuse opensuse 13.2 <built-in method update of dict object at 0x7e60e8342a00> Operating System
apple xcode 7.0 <built-in method update of dict object at 0x7e60e8342300> Application
redhat enterprise_linux_desktop 6.0 <built-in method update of dict object at 0x7e60a8a62300> Operating System
redhat enterprise_linux_hpc_node 6 <built-in method update of dict object at 0x7e60e8341100> Operating System
redhat enterprise_linux_server 6.0 <built-in method update of dict object at 0x7e60e83404c0> Operating System
redhat enterprise_linux_server_eus 6.7.z <built-in method update of dict object at 0x7e60e8342880> Operating System
redhat enterprise_linux_workstation 6.0 <built-in method update of dict object at 0x7e60e8343fc0> Operating System
oracle solaris 11.3 <built-in method update of dict object at 0x7e60e8340c40> Operating System

Affected Configurations

Operator: OR

Vulnerable CPE
Yes cpe:2.3:a:apache:subversion:1.6.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.2:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.3:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.4:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.5:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.6:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.11:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.12:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.13:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.14:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.15:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.16:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.17:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.18:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.19:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.20:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.21:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.6.23:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.2:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.3:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.4:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.5:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.6:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.11:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.12:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.13:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.14:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.15:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.16:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.17:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.18:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.7.19:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.2:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.3:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.4:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.5:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.6:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.8:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.9:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.10:*:*:*:*:*:*:*
Yes cpe:2.3:a:apache:subversion:1.8.11:*:*:*:*:*:*:*

Operator: OR

Vulnerable CPE
Yes cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*
Yes cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*

Operator: OR

Vulnerable CPE
Yes cpe:2.3:a:apple:xcode:7.0:*:*:*:*:*:*:*

Operator: OR

Vulnerable CPE
Yes cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
Yes cpe:2.3:o:redhat:enterprise_linux_hpc_node:6:*:*:*:*:*:*:*
Yes cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
Yes cpe:2.3:o:redhat:enterprise_linux_server_eus:6.7.z:*:*:*:*:*:*:*
Yes cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*

Operator: OR

Vulnerable CPE
Yes cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:*

References

Notification
Message here