Description
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-5119-1 | subversion security update |
EUVD |
EUVD-2022-28983 | Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected. |
Ubuntu USN |
USN-5372-1 | Subversion vulnerabilities |
Ubuntu USN |
USN-5450-1 | Subversion vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-03T03:59:23.785Z
Reserved: 2022-01-27T00:00:00.000Z
Link: CVE-2022-24070
No data.
Status : Modified
Published: 2022-04-12T18:15:09.137
Modified: 2024-11-21T06:49:45.943
Link: CVE-2022-24070
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN