Subversion < 1.0.4 Pre-Commit-Hook Remote Overflow

high Nessus Plugin ID 12260

Language:

Synopsis

The remote service is vulnerable to a buffer overflow.

Description

The remote host is reported vulnerable to a remote overflow. An attacker, exploiting this hole, would be given full access to the target machine. Versions of Subversion less than 1.0.4 are vulnerable to this attack.

Solution

Upgrade to version 1.0.4 or higher

See Also

https://subversion.apache.org/source-code?view=markup

Plugin Details

Severity: High

ID: 12260

File Name: subversion_1_0_3.nasl

Version: 1.15

Type: remote

Family: Misc.

Published: 6/8/2004

Updated: 11/15/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: High

Base Score: 7.5

Temporal Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 5/21/2004

Reference Information

BID: 10428