CVE Vulnerabilities

CVE-2015-0202

Published: Apr 08, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
5 MODERATE
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows remote attackers to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes.

Affected Software

NameVendorStart VersionEnd Version
SubversionApache1.8.0 (including)1.8.0 (including)
SubversionApache1.8.1 (including)1.8.1 (including)
SubversionApache1.8.2 (including)1.8.2 (including)
SubversionApache1.8.3 (including)1.8.3 (including)
SubversionApache1.8.4 (including)1.8.4 (including)
SubversionApache1.8.5 (including)1.8.5 (including)
SubversionApache1.8.6 (including)1.8.6 (including)
SubversionApache1.8.7 (including)1.8.7 (including)
SubversionApache1.8.8 (including)1.8.8 (including)
SubversionApache1.8.9 (including)1.8.9 (including)
SubversionApache1.8.10 (including)1.8.10 (including)
SubversionApache1.8.11 (including)1.8.11 (including)
SubversionUbuntulucid*
SubversionUbuntutrusty*
SubversionUbuntuupstream*
SubversionUbuntuutopic*
SubversionUbuntuvivid*

References