Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Mageia 9: MGASA-2025-0058 Critical Issue in Subversion Filename Validation

mageia
Calendar Grey February 12, 2025
Dist Mageia Esm H88
Mageia has released a security advisory addressing Subversion vulnerabilities related to filename validation to help mitigate risks from malformed inputs affecting repositories
Insufficient validation of filenames against control characters in Apache Subversion repositories served via mod_dav_svn allows authenticated users with commit access to commit a c...

Summary

Insufficient validation of filenames against control characters in Apache Subversion repositories served via mod_dav_svn allows authenticated users with commit access to commit a corrupted revision, leading to disruption for users of the repository. (CVE-2024-46901)

References

- https://bugs.mageia.org/show_bug.cgi?id=33838

- https://www.openwall.com/lists/oss-security/2024/12/09/1

- https://www.cve.org/CVERecord?id=CVE-2024-46901

Resolution

SRPMS

- 9/core/subversion-1.14.2-2.1.mga9

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 12 Feb 2025
URL: https://advisories.mageia.org/MGASA-2025-0058.html
Type: security
CVE: CVE-2024-46901

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here