| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.52373 |
| Category: | FreeBSD Local Security Checks |
| Title: | FreeBSD Ports: subversion, subversion-perl, subversion-python |
| Summary: | FreeBSD Ports: subversion, subversion-perl, subversion-python |
| Description: | The remote host is missing an update to the system as announced in the referenced advisory. The following packages are affected: subversion subversion-perl subversion-python CVE-2004-0749 The mod_authz_svn module in Subversion 1.0.7 and earlier does not properly restrict access to all metadata on unreadable paths, which could allow remote attackers to gain sensitive information via (1) svn log -v, (2) svn propget, or (3) svn blame, and other commands that follow renames. Solution: Update your system with the appropriate patches or software upgrades. http://subversion.tigris.org/security/CVE-2004-0749-advisory.txt http://www.vuxml.org/freebsd/184f5d0b-0fe8-11d9-8a8a-000c41e2cdad.html |
| Cross-Ref: |
BugTraq ID: 11243 Common Vulnerability Exposure (CVE) ID: CVE-2004-0749 http://fedoranews.org/updates/FEDORA-2004-318.shtml http://www.gentoo.org/security/en/glsa/glsa-200409-35.xml http://www.securityfocus.com/bid/11243 XForce ISS Database: subversion-information-disclosure(17472) http://xforce.iss.net/xforce/xfdb/17472 |
| Copyright | Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|