|Summary:||CVE-2009-2411 subversion: multiple heap overflow issues|
|Product:||[Other] Security Response||Reporter:||Josh Bressers <bressers>|
|Component:||vulnerability||Assignee:||Red Hat Product Security <security-response-team>|
|Status:||CLOSED ERRATA||QA Contact:|
|Version:||unspecified||CC:||jmarko, jorton, kreilly, michal, mjc, vdanen|
|Fixed In Version:||Doc Type:||Bug Fix|
|Doc Text:||Story Points:||---|
|Last Closed:||2009-08-27 22:03:27 UTC||Type:||---|
|oVirt Team:||---||RHEL 7.3 requirements from Atomic Host:|
|Cloudforms Team:||---||Target Upstream Version:|
|Bug Depends On:||515815, 515816, 515817, 515818|
Description Josh Bressers 2009-07-30 15:33:12 UTC
Matt Lewis discovered an integer over flaw in the subversion server. A user with commit access to a repository could send a specially crafted commit that could cause the subversion server to crash or possibly execute arbitrary code with the permissions of the server.
Comment 3 Tomas Hoger 2009-08-09 17:28:52 UTC
Comment 4 Vincent Danen 2009-08-10 14:37:37 UTC
The advisory indicates these are heap overflow issues, not an integer overflow issue (just to clarify).
Comment 5 errata-xmlrpc 2009-08-10 16:59:41 UTC
This issue has been addressed in following products: Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 4 Via RHSA-2009:1203 https://rhn.redhat.com/errata/RHSA-2009-1203.html
Comment 6 Fedora Update System 2009-08-10 21:48:32 UTC
subversion-1.6.4-2.fc10 has been pushed to the Fedora 10 stable repository. If problems still persist, please make note of it in this bug report.
Comment 7 Fedora Update System 2009-08-10 21:53:40 UTC
subversion-1.6.4-2.fc11 has been pushed to the Fedora 11 stable repository. If problems still persist, please make note of it in this bug report.
Comment 8 Michal Jaegermann 2009-08-12 14:41:53 UTC
> subversion-1.6.4-2.fc10 has been pushed ... Despite of comment #6, and FEDORA-2009-8432 annoucement, so far this update did not show up in Fedora 10 repositories. Other F10 packages annouced at the same time and later, and also subversion-1.6.4-2.fc11 for F11, already did.
Comment 10 Michal Jaegermann 2009-08-19 17:39:53 UTC
> https://fedorahosted.org/bodhi/ticket/350 It appears that "Priority: major" of this ticket is not so major after all. It does not seem to have any repository effects after a week.
Comment 11 Michal Jaegermann 2009-08-27 22:03:27 UTC
subversion-1.6.4-2.fc10 at last showed up on repos. The catch is that this took over two weeks for a security update. Smells like a problem to me although I do not know where.