Oval Definition:
oval:org.mitre.oval:def:20905
Revision Date
:
2014-02-17
Version
:
66
Title
:
RHSA-2013:0737: subversion security update (Moderate)
Description
:
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x through 1.6.20 and 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a PROPFIND request for an activity URL.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CESA-2013:0737
CVE-2013-1845
CVE-2013-1846
CVE-2013-1847
CVE-2013-1849
RHSA-2013:0737-01
Platform(s)
:
CentOS Linux 5
CentOS Linux 6
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Product(s)
:
subversion
Definition Synopsis
Operation system section
Redhat 6 or Centos 6 release
The operating system installed on the system is Red Hat Enterprise Linux 6
OR
The operating system installed on the system is CentOS Linux 6.x
AND
Packages section
subversion-ruby is earlier than 0:1.6.11-9.el6_4
OR
subversion-kde is earlier than 0:1.6.11-9.el6_4
OR
subversion-svn2cl is earlier than 0:1.6.11-9.el6_4
OR
subversion-javahl is earlier than 0:1.6.11-9.el6_4
OR
mod_dav_svn is earlier than 0:1.6.11-9.el6_4
OR
subversion-devel is earlier than 0:1.6.11-9.el6_4
OR
subversion-gnome is earlier than 0:1.6.11-9.el6_4
OR
subversion-perl is earlier than 0:1.6.11-9.el6_4
OR
subversion is earlier than 0:1.6.11-9.el6_4
Operation system section
Redhat 5 or Centos 5 release
The operating system installed on the system is Red Hat Enterprise Linux 5
OR
The operating system installed on the system is CentOS Linux 5.x
AND
Packages section
subversion-ruby is earlier than 0:1.6.11-11.el5_9
OR
subversion-devel is earlier than 0:1.6.11-11.el5_9
OR
subversion-javahl is earlier than 0:1.6.11-11.el5_9
OR
mod_dav_svn is earlier than 0:1.6.11-11.el5_9
OR
subversion-perl is earlier than 0:1.6.11-11.el5_9
OR
subversion is earlier than 0:1.6.11-11.el5_9
BACK