Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Subversion Date Parsing Function Buffer Overflow Vulnerability

Subversion is prone to a buffer-overflow vulnerability that resides in one of its data-parsing functions. Specifically, Subversion calls an 'sscanf()' function when converting data strings to different formats. As a result, the software copies user-supplied data into an unspecified buffer without proper boundary checks.

Subversion 1.0.2 and prior versions are prone to this issue.







 

Privacy Statement
Copyright 2009, SecurityFocus