Gentoo Linux Security Advisory GLSA 200908-05
https://security.gentoo.org/
Severity: High
Title: Subversion: Remote execution of arbitrary code
Date: August 18, 2009
Bugs: #280494
ID: 200908-05
Synopsis
=======
Multiple integer overflows, leading to heap-based buffer overflows in
the Subversion client and server might allow remote attackers to
execute arbitrary code.
Background
=========
Subversion is a versioning system designed to be a replacement for CVS.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 dev-util/subversion < 1.6.4 >= 1.6.4
==========
Matt Lewis of Google reported multiple integer overflows in the
libsvn_delta library, possibly leading to...
style>.gentoo_availability{display:block;}
Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3654775_4c9dbbdde36eef04251a4ced7eac4df9 on line 11
Get the latest Linux and open source security news straight to your inbox.