PT-2011-3347 · Apache+1 · Apache Subversion+1

Joe Schaefer

·

Published

2011-06-06

·

Updated

2024-06-15

·

CVE-2011-1752

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Apache Subversion versions prior to 1.6.17
Description The issue allows remote attackers to cause a denial of service, resulting in a NULL pointer dereference and daemon crash, via a request for a baselined WebDAV resource. This issue has been exploited in the wild.
Recommendations For versions prior to 1.6.17, update to version 1.6.17 or later to resolve the issue. As a temporary workaround, consider restricting access to the mod dav svn module to minimize the risk of exploitation.

Fix

DoS

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-1752
DSA-2251-1
ELSA-2011-0862
OPENSUSE-SU-2024:10538-1
RHSA-2011:0861
RHSA-2011:0862
RHSA-2011_0861
RHSA-2011_0862

Affected Products

Apache Subversion
Red Hat