Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-46901


Insufficient validation of filenames against control characters in Apache Subversion repositories served via mod_dav_svn allows authenticated users with commit access to commit a corrupted revision, leading to disruption for users of the repository. All versions of Subversion up to and including Subversion 1.14.4 are affected if serving repositories via mod_dav_svn. Users are recommended to upgrade to version 1.14.5, which fixes this issue. Repositories served via other access methods are not affected.


Published

2024-12-09T10:15:05.230

Last Modified

2025-07-15T16:35:39.093

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 3.1 (LOW)

Weaknesses
  • Type: Secondary
    CWE-20
    CWE-116

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application apache subversion < 1.14.5 Yes
Operating System debian debian_linux 11.0 Yes

References