Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200908-05
https://security.gentoo.org/
Severity: High
Title: Subversion: Remote execution of arbitrary code
Date: August 18, 2009
Bugs: #280494
ID: 200908-05
Synopsis
=======
Multiple integer overflows, leading to heap-based buffer overflows in
the Subversion client and server might allow remote attackers to
execute arbitrary code.
Background
=========
Subversion is a versioning system designed to be a replacement for CVS.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 dev-util/subversion < 1.6.4 >= 1.6.4
==========
Matt Lewis of Google reported multiple integer overflows in the
libsvn_delta library, possibly leading to...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.