Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Gentoo: 200908-05 High: Subversion Remote Code Execution Risk

gentoo
Calendar Grey August 18, 2009
Dist Gentoo Esm H88
Gentoo Linux Security Advisory GLSA 202110-01 outlines a vulnerability in OpenSSH that may allow unauthorized access. Users are urged to update their installations.
Multiple integer overflows, leading to heap-based buffer overflows in the Subversion client and server might allow remote attackers to execute arbitrary code

Summary

Gentoo Linux Security Advisory GLSA 200908-05 https://security.gentoo.org/ Severity: High Title: Subversion: Remote execution of arbitrary code Date: August 18, 2009 Bugs: #280494 ID: 200908-05

Synopsis ======= Multiple integer overflows, leading to heap-based buffer overflows in the Subversion client and server might allow remote attackers to execute arbitrary code.
Background ========= Subversion is a versioning system designed to be a replacement for CVS.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-util/subversion < 1.6.4 >= 1.6.4
========== Matt Lewis of Google reported multiple integer overflows in the libsvn_delta library, possibly leading to...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3654775_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here