CVE-2014-3528
Publication date 5 August 2014
Last updated 24 July 2024
Ubuntu priority
Apache Subversion 1.0.0 through 1.7.x before 1.7.17 and 1.8.x before 1.8.10 uses an MD5 hash of the URL and authentication realm to store cached credentials, which makes it easier for remote servers to obtain the credentials via a crafted authentication realm.
Status
Package | Ubuntu Release | Status |
---|---|---|
subversion | 14.04 LTS trusty |
Fixed 1.8.8-1ubuntu3.1
|
Patch details
Package | Patch details |
---|---|
subversion |
References
Related Ubuntu Security Notices (USN)
- USN-2316-1
- Subversion vulnerabilities
- 14 August 2014