Bug 2074772 (CVE-2022-24070) - CVE-2022-24070 subversion: Subversion's mod_dav_svn is vulnerable to memory corruption
Summary: CVE-2022-24070 subversion: Subversion's mod_dav_svn is vulnerable to memory c...
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2022-24070
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2074773 2076555 2076556 2076557 2076558 2076559 2076560 2076561 2076562 2076563 2076564 2076565 2076566 2077476 2077477
Blocks: 2074782
TreeView+ depends on / blocked
 
Reported: 2022-04-13 04:49 UTC by Avinash Hanwate
Modified: 2022-07-02 00:42 UTC (History)
3 users (show)

Fixed In Version: subversion 1.14.2, subversion 1.10.8, subversion 1.15
Clone Of:
Environment:
Last Closed: 2022-07-02 00:42:18 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2022:2222 0 None None None 2022-05-11 21:29:25 UTC
Red Hat Product Errata RHSA-2022:2234 0 None None None 2022-05-12 15:47:29 UTC
Red Hat Product Errata RHSA-2022:2236 0 None None None 2022-05-12 23:14:47 UTC
Red Hat Product Errata RHSA-2022:2237 0 None None None 2022-05-12 14:00:03 UTC
Red Hat Product Errata RHSA-2022:4591 0 None None None 2022-05-18 01:28:18 UTC
Red Hat Product Errata RHSA-2022:4722 0 None None None 2022-05-24 08:30:58 UTC
Red Hat Product Errata RHSA-2022:4941 0 None None None 2022-06-08 09:55:25 UTC

Description Avinash Hanwate 2022-04-13 04:49:27 UTC
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (inclusive). Servers that do not use mod_dav_svn are not affected.

Comment 1 Avinash Hanwate 2022-04-13 04:49:48 UTC
Created subversion tracking bugs for this issue:

Affects: fedora-all [bug 2074773]

Comment 2 Mauro Matteo Cascella 2022-04-19 10:26:39 UTC
Security advisory: https://subversion.apache.org/security/CVE-2022-24070-advisory.txt.

Comment 3 Mauro Matteo Cascella 2022-04-19 10:37:21 UTC
Upstream issue:
https://issues.apache.org/jira/browse/SVN-4880

Upstream fix:
https://svn.apache.org/viewvc?view=revision&revision=1894734

Comment 7 errata-xmlrpc 2022-05-11 21:29:23 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.4 Extended Update Support

Via RHSA-2022:2222 https://access.redhat.com/errata/RHSA-2022:2222

Comment 8 errata-xmlrpc 2022-05-12 14:00:01 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions

Via RHSA-2022:2237 https://access.redhat.com/errata/RHSA-2022:2237

Comment 9 errata-xmlrpc 2022-05-12 15:47:27 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2022:2234 https://access.redhat.com/errata/RHSA-2022:2234

Comment 10 errata-xmlrpc 2022-05-12 23:14:45 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.2 Extended Update Support

Via RHSA-2022:2236 https://access.redhat.com/errata/RHSA-2022:2236

Comment 11 errata-xmlrpc 2022-05-18 01:28:15 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2022:4591 https://access.redhat.com/errata/RHSA-2022:4591

Comment 12 errata-xmlrpc 2022-05-24 08:30:55 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.4 Extended Update Support

Via RHSA-2022:4722 https://access.redhat.com/errata/RHSA-2022:4722

Comment 13 errata-xmlrpc 2022-06-08 09:55:24 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2022:4941 https://access.redhat.com/errata/RHSA-2022:4941

Comment 14 Product Security DevOps Team 2022-07-02 00:42:16 UTC
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):

https://access.redhat.com/security/cve/cve-2022-24070


Note You need to log in before you can comment on or make changes to this bug.