CVE-2018-11803 in Apache and Canonical Products
Published on February 5, 2019
Subversion's mod_dav_svn Apache HTTPD module versions 1.11.0 and 1.10.0 to 1.10.3 will crash after dereferencing an uninitialized pointer if the client omits the root path in a recursive directory listing operation.
Products Associated with CVE-2018-11803
stack.watch emails you whenever new vulnerabilities are published in Apache Subversion or Canonical Ubuntu Linux. Just hit a watch button to start following.
Affected Versions
Apache Software Foundation Apache Subversion Version Apache Subversion 1.11.0, 1.10.0 to 1.10.3 is affected by CVE-2018-11803Exploit Probability
EPSS
0.81%
Percentile
74.09%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.