

Rewterz Threat Advisory – CVE-2019-1678 – Cisco Meeting Server Denial of Service Vulnerability
February 8, 2019
Rewterz Threat Alert – New Linux coin miner kills competing malware to maximize profits
February 11, 2019
Rewterz Threat Advisory – CVE-2019-1678 – Cisco Meeting Server Denial of Service Vulnerability
February 8, 2019
Rewterz Threat Alert – New Linux coin miner kills competing malware to maximize profits
February 11, 2019Severity
Medium
Category
Vulnerability
Analysis Summary
Subversion’s mod_dav_svn Apache HTTPD module will crash after de-referencing an uninitialized pointer if the client omits the root path in a recursive directory listing operation. This issue can be triggered by any client on Subversion repositories configured for anonymous read access. If read access requires authentication, a denial of service attack can only be performed by an authenticated user.
Impact
Denial of Service
Affected Products
Apache Subversion 1.11.0
Apache Subversion 1.10.3
Apache Subversion 1.10
Remediation
Vendor has released updates for the affected products. Update to these versions.
Apache Subversion 1.10.4
Apache Subversion 1.11.1.