UbuntuUpdates.org

Bugs fixes in "subversion"

Origin Bug number Title Date fixed
CVE CVE-2017-9800 Arbitrary code execution on clients through malicious svn+ssh URLs in svn:externals and svn:sync-from-url 2017-08-11
CVE CVE-2016-8734 Unrestricted XML entity expansion in mod_dontdothat and Subversion clients using http(s):// 2017-08-11
CVE CVE-2016-2168 The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4 allows remote 2017-08-11
CVE CVE-2016-2167 The canonicalize_username function in svnserve/cyrus_auth.c in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4, when Cyrus SASL authentication 2017-08-11
CVE CVE-2017-9800 Arbitrary code execution on clients through malicious svn+ssh URLs in svn:externals and svn:sync-from-url 2017-08-11
CVE CVE-2016-8734 Unrestricted XML entity expansion in mod_dontdothat and Subversion clients using http(s):// 2017-08-11
CVE CVE-2016-2168 The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4 allows remote 2017-08-11
CVE CVE-2016-2167 The canonicalize_username function in svnserve/cyrus_auth.c in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4, when Cyrus SASL authentication 2017-08-11
CVE CVE-2017-9800 Arbitrary code execution on clients through malicious svn+ssh URLs in svn:externals and svn:sync-from-url 2017-08-11



About   -   Send Feedback to @ubuntu_updates