Red Hat Bugzilla – Bug 242041
CVE-2007-2448 subversion revision property information leak
Last modified: 2008-01-16 04:21:07 EST
Description of problem:
Subversion versions up to and including 1.4.3 have a bug which allows,
in certain specific scenarios, data stripped from the output of 'svn
log' due to the requesting user's lack of access priveleges to be
visible via 'svn propget', 'svn proplist', and 'svn propedit'.
subversion 1.4.4, released the 8th of June (
http://subversion.tigris.org/servlets/NewsItemView?newsItemID=1891 ), fixes
CVE-2007-2448 and others minor bugs.
*** This bug has been marked as a duplicate of 243757 ***