1 results (0.002 seconds)

CVSS: 7.5EPSS: 2%CPEs: 8EXPL: 0

07 Dec 2013 — The get_parent_resource function in repos.c in mod_dav_svn Apache HTTPD server module in Subversion 1.7.11 through 1.7.13 and 1.8.1 through 1.8.4, when built with assertions enabled and SVNAutoversioning is enabled, allows remote attackers to cause a denial of service (assertion failure and Apache process abort) via a non-canonical URL in a request, as demonstrated using a trailing /. La función get_parent_resource en respos.c en el módulo de servidor mod_dav_svn Apache HTTPD en Subversion 1.7.11 a 1.7.13 y... • http://lists.opensuse.org/opensuse-updates/2013-12/msg00029.html • CWE-20: Improper Input Validation •