GLSA-200903-20 : WebSVN: Multiple vulnerabilities
Medium Nessus Plugin ID 35818
SynopsisThe remote Gentoo host is missing one or more security-related patches.
DescriptionThe remote host is affected by the vulnerability described in GLSA-200903-20 (WebSVN: Multiple vulnerabilities)
James Bercegay of GulfTech Security reported a Cross-site scripting (XSS) vulnerability in the getParameterisedSelfUrl() function in index.php (CVE-2008-5918) and a directory traversal vulnerability in rss.php when magic_quotes_gpc is disabled (CVE-2008-5919).
Bas van Schaik reported that listing.php does not properly enforce access restrictions when using an SVN authz file to authenticate users (CVE-2009-0240).
A remote attacker can exploit these vulnerabilities to overwrite arbitrary files, to read changelogs or diffs for restricted projects and to hijack a user's session.
There is no known workaround at this time.
SolutionAll WebSVN users should upgrade to the latest version:
# emerge --sync # emerge --ask --oneshot --verbose '>=www-apps/websvn-2.1.0'