The Source for Java Technology Collaboration
User: Password:



   

News: Subversion 1.0.3

May. 20, 2004
Permalink

Source: OSDir.com
Story Link: http://osdir.com/Article807.phtml

The Subversion development team has released version 1.0.3 of their versioning control application to address a potential buffer overflow security problem. "Severity ranges from 'Denial of Service' to, potentially, 'Arbitrary Code Execution', depending upon how skilled the attacker is and the ABI specifics of your platform. The server vulnerabilities can be triggered without write/commit access to the repository. So repositories with anonymous/public read access are vulnerable." Naturally the team advises users to upgrade.

Return to java.net News.

 Feed java.net RSS Feeds