PT-2015-6821 · Apache+1 · Apache Subversion+1
Ivan Zhakov
·
Published
2015-12-15
·
Updated
2024-06-15
·
CVE-2015-5259
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:C |
Name of the Vulnerable Software and Affected Versions
Apache Subversion versions 1.9.0 through 1.9.2
Description
The issue is related to an integer overflow in the
read string function, which can be exploited by remote attackers to execute arbitrary code. This is achieved through an svn:// protocol string that triggers a heap-based buffer overflow and an out-of-bounds read.Recommendations
For Apache Subversion versions 1.9.0 through 1.9.2, update to version 1.9.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the
read string function in libsvn ra svn/marshal.c until a patch is applied.Fix
RCE
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Apache Subversion