CVE-2016-2167

Priority
Low
Description
The canonicalize_username function in svnserve/cyrus_auth.c in Apache
Subversion before 1.8.16 and 1.9.x before 1.9.4, when Cyrus SASL
authentication is used, allows remote attackers to authenticate and bypass
intended access restrictions via a realm string that is a prefix of an
expected repository realm string.
Ubuntu-Description
Daniel Shahaf and James McCoy discovered that Subversion did not
properly verify realms when using Cyrus SASL authentication. A
remote attacker could use this to possibly bypass intended access
restrictions.
References
Package
Upstream:released (1.9.4-1)
Ubuntu 17.10 (Artful Aardvark):not-affected (1.9.4-1ubuntu1)
Ubuntu 12.04 ESM (Precise Pangolin):needed
Ubuntu 14.04 LTS (Trusty Tahr):released (1.8.8-1ubuntu3.3)
Ubuntu Core 15.04:DNE
Ubuntu 16.04 LTS (Xenial Xerus):released (1.9.3-2ubuntu1.1)
Ubuntu 17.04 (Zesty Zapus):not-affected (1.9.4-1ubuntu1)
More Information

Updated: 2017-08-11 23:19:54 UTC (commit 13081)