FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

mod_dav_svn -- server crash

Affected packages
1.9.0 <= mod_dav_svn <= 1.10.6
1.11.0 <= mod_dav_svn <= 1.14.0

Details

VuXML ID 06a5abd4-6bc2-11eb-b292-90e2baa3bafc
Discovery 2021-01-29
Entry 2021-02-10

Subversion project reports:

Subversion's mod_authz_svn module will crash if the server is using in-repository authz rules with the AuthzSVNReposRelativeAccessFile option and a client sends a request for a non-existing repository URL.

References

URL https://subversion.apache.org/security/CVE-2020-17525-advisory.txt