~ubuntu-branches/ubuntu/raring/subversion/raring-security

Viewing all changes in revision 64.

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2013-06-21 13:08:20 UTC
  • Revision ID: package-import@ubuntu.com-20130621130820-6edx772ic4t1aki6
Tags: 1.7.5-1ubuntu3.1
* SECURITY UPDATE: denial of service in mod_dav_svn
  - debian/patches/CVE-2013-1845.patch: handle multiple calls in
    subversion/mod_dav_svn/deadprops.c.
  - CVE-2013-1845
* SECURITY UPDATE: denial of service in mod_dav_svn via LOCK
  - debian/patches/CVE-2013-1846_1847.patch: properly validate locks in
    subversion/mod_dav_svn/lock.c.
  - CVE-2013-1846
  - CVE-2013-1847
* SECURITY UPDATE: denial of service in mod_dav_svn via PROPFIND
  - debian/patches/CVE-2013-1849.patch: validate type in
    subversion/mod_dav_svn/liveprops.c.
  - CVE-2013-1849
* SECURITY UPDATE: denial of service in mod_dav_svn via log REPORT
  - debian/patches/CVE-2013-1884.patch: fix error handling in
    subversion/mod_dav_svn/reports/log.c.
  - CVE-2013-1884
* SECURITY UPDATE: repo corruption via newline chars in filenames
  - debian/patches/CVE-2013-1968.patch: properly escape paths in
    subversion/libsvn_fs_fs/tree.c, added test to
    subversion/tests/libsvn_fs/fs-test.c.
  - CVE-2013-1968
* SECURITY UPDATE: denial of service via closed connection
  - debian/patches/CVE-2013-2112.patch: check for closed connections in
    subversion/svnserve/main.c.
  - CVE-2013-2112

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: