Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Thomas Åkesson

#32634of 53,633
7.8Total CVSS
Vulnerabilities · 1
PT-2020-6583
7.8
2020-08-12
Apache · Subversion · CVE-2020-17525
**Name of the Vulnerable Software and Affected Versions** Subversion mod dav svn+mod authz svn versions prior to 1.10.7 Subversion mod dav svn+mod authz svn versions prior to 1.14.1 **Description** The mod authz svn module in Subversion will crash if the server is using in-repository authz rules with the `AuthzSVNReposRelativeAccessFile` option and a client sends a request for a non-existing repository URL. This can lead to disruption for users of the service. **Recommendations** For Subversion mod dav svn+mod authz svn versions prior to 1.10.7, update to version 1.10.7 or later. For Subversion mod dav svn+mod authz svn versions prior to 1.14.1, update to version 1.14.1 or later.