imPC@ndo IT

Tracker / CVE-2022-24070

CVE-2022-24070

High 7.5

Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.

Affected products and versions

apache subversion · 1.10.0 → 1.10.8
apache subversion · 1.14.0 → 1.14.2
apple macos · 12.0 → 12.5
debian debian_linux
fedoraproject fedora

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References