FreeBSD : subversion -- remotely triggerable 'Assertion failed' DoS vulnerability or read overflow. (2ae24334-f2e6-11e2-8346-001e8c75030d)
Medium Nessus Plugin ID 69052
SynopsisThe remote FreeBSD host is missing one or more security-related updates.
DescriptionSubversion Project reports :
Subversion's mod_dav_svn Apache HTTPD server module will trigger an assertion on some requests made against a revision root. This can lead to a DoS. If assertions are disabled it will trigger a read overflow which may cause a SEGFAULT (or equivalent) or undefined behavior.
Commit access is required to exploit this.
SolutionUpdate the affected packages.