CVE-2015-5259
08.01.2016, 19:59
Integer overflow in the read_string function in libsvn_ra_svn/marshal.c in Apache Subversion 1.9.x before 1.9.3 allows remote attackers to execute arbitrary code via an svn:// protocol string, which triggers a heap-based buffer overflow and an out-of-bounds read.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apache | subversion | 1.9.0 |
| apache | subversion | 1.9.1 |
| apache | subversion | 1.9.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| subversion |
| ||||||||||||||||||||||||||||||||||||||||||||||||
| subversion-bash-completion |
| ||||||||||||||||||||||||||||||||||||||||||||||||
| subversion-devel |
| ||||||||||||||||||||||||||||||||||||||||||||||||
| subversion-perl |
| ||||||||||||||||||||||||||||||||||||||||||||||||
| subversion-python |
| ||||||||||||||||||||||||||||||||||||||||||||||||
| subversion-tools |
|
Common Weakness Enumeration
References