CVE-2013-1847
EPSS 51.4%
描述
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.0 through 1.6.20 and 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an anonymous LOCK for a URL that does not exist.
如何修補 CVE-2013-1847
要修補 CVE-2013-1847,請將受影響套件升級到下列已修補版本。
- Debian/subversion—升級至 1.7.9-1 或更新版本
CVE-2013-1847 正在被利用嗎?
可能 — EPSS 為 51.4%,屬於高被利用機率區間,建議優先修補。
受影響套件(1)
- from 0, < 1.7.9-1