CVE-2007-2448
Publication date 14 June 2007
Last updated 24 July 2024
Ubuntu priority
Subversion 1.4.3 and earlier does not properly implement the “partial access” privilege for users who have access to changed paths but not copied paths, which allows remote authenticated users to obtain sensitive information (revision properties) via svn (1) propget, (2) proplist, or (3) propedit.
Status
Package | Ubuntu Release | Status |
---|---|---|
subversion | 10.10 maverick |
Not affected
|
10.04 LTS lucid |
Not affected
|
|
9.10 karmic |
Not affected
|
|
9.04 jaunty |
Not affected
|
|
8.10 intrepid |
Not affected
|
|
8.04 LTS hardy |
Not affected
|
|
7.10 gutsy |
Not affected
|
|
7.04 feisty | Ignored end of life, was needed | |
6.10 edgy | Ignored end of life, was needed | |
6.06 LTS dapper |
Fixed 1.3.1-3ubuntu1.3
|
Notes
Patch details
Package | Patch details |
---|---|
subversion |
References
Related Ubuntu Security Notices (USN)
- USN-1053-1
- Subversion vulnerabilities
- 1 February 2011