From dc7cbdfa65fd814b3b9aa3c56257da201109e807 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Fri, 5 Apr 2019 21:17:31 +0100 Subject: gentoo resync : 05.04.2019 --- metadata/glsa/glsa-201904-08.xml | 52 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 52 insertions(+) create mode 100644 metadata/glsa/glsa-201904-08.xml (limited to 'metadata/glsa/glsa-201904-08.xml') diff --git a/metadata/glsa/glsa-201904-08.xml b/metadata/glsa/glsa-201904-08.xml new file mode 100644 index 000000000000..9a634deb75e5 --- /dev/null +++ b/metadata/glsa/glsa-201904-08.xml @@ -0,0 +1,52 @@ + + + + Subversion: Denial of Service + A vulnerability in Subversion could lead to a Denial of Service + condition. + + subversion + 2019-04-02 + 2019-04-02 + 676094 + remote + + + 1.10.4 + 1.10.4 + + + +

Subversion is a version control system intended to eventually replace + CVS. Like CVS, it has an optional client-server architecture (where the + server can be an Apache server running mod_svn, or an ssh program as in + CVS’s :ext: method). In addition to supporting the features found in + CVS, Subversion also provides support for moving and copying files and + directories. +

+
+ +

A vulnerability was discovered in Subversion’s mod_dav_svn, that could + lead to a Denial of Service Condition. +

+
+ +

An attacker could cause a possible enial of Service condition.

+
+ +

There is no known workaround at this time.

+
+ +

All Subversion users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=dev-vcs/subversion-1.10.4" + +
+ + CVE-2018-11803 + + BlueKnight + b-man +
-- cgit v1.2.3