CVE-2011-0715
subversion - denial of service
EPSS 8.5%
Description
The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.16, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request that contains a lock token.
How to fix CVE-2011-0715
To remediate CVE-2011-0715, upgrade the affected package to a fixed version below.
- Debian/subversion—upgrade to 1.6.16dfsg-1 or later
- Debian/subversion—upgrade to 1.5.1dfsg1-6 or later
Is CVE-2011-0715 being exploited?
Moderate — EPSS is 8.5%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (2)
- from 0, < 1.6.16dfsg-1
- from 0, < 1.5.1dfsg1-6