← Back

CVE-2009-2411

nvd nist
Published: Aug 7, 2009Modified: Apr 23, 2026

JSON object

Loading...
8.5
Vector
AV:N/AC:M/Au:S/C:C/I:C/A:C
Exploitability: 6.8 / Impact: 10.0
Source: NVD

Description

Multiple integer overflows in the libsvn_delta library in Subversion before 1.5.7, and 1.6.x before 1.6.4, allow remote authenticated users and remote Subversion servers to execute arbitrary code via an svndiff stream with large windows that trigger a heap-based buffer overflow, a related issue to CVE-2009-2412.

Affected (64)

1 product
Subversion
Configuration A
64 vulnerable
Vulnerable SoftwareAffected Versions
Subversion
Up to 1.5.6
Version 0.22.1
Version 0.23.0
Version 0.24.0
Version 0.24.1
Version 0.24.2
Version 0.25.0
Version 0.27.0
Version 0.28.0
Version 0.28.1
Version 0.28.2
Version 0.29.0
Version 0.30.0
Version 0.31.0
Version 0.32.0
Version 0.32.1
Version 0.33.0
Version 0.33.1
Version 0.34.0
Version 0.35.0
Version 0.35.1
Version 0.36.0
Version 0.37.0
Version 1.0.0
Version 1.0.1
Version 1.0.2
Version 1.0.3
Version 1.0.4
Version 1.0.5
Version 1.0.6
Version 1.0.7
Version 1.0.8
Version 1.0.9
Version 1.0
Version 1.1.0
Version 1.1.0_rc1
Version 1.1.0_rc2
Version 1.1.0_rc3
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.2.0
Version 1.2.1
Version 1.2.2
Version 1.2.3
Version 1.3.0
Version 1.3.1
Version 1.3.2
Version 1.4.0
Version 1.4.1
Version 1.4.2
Version 1.4.3
Version 1.4.4
Version 1.4.5
Version 1.5.0
Version 1.5.1
Version 1.5.3
Version 1.5.4
Version 1.5.5
Version 1.6.0
Version 1.6.1
Version 1.6.2
Version 1.6.3

Related CWEs

References (52)

Source: secalert@redhat.com
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.