CVE-2011-1752

EXPLOITED IN THE WILD

Apache Subversion < 1.6.17 - Denial of Service via mod_dav_svn Baselined WebDAV Resource Request

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2011-1752 has been observed exploited in the wild (reported by VulnCheck KEV, InTheWild.io).

Description

The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.17, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request for a baselined WebDAV resource, as exploited in the wild in May 2011.

References (21)

Core 21
Core References
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2011/dsa-2251
Third Party Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-1144-1
Vendor Advisory x_refsource_confirm
http://support.apple.com/kb/HT5130
Third Party Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2011:106
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/44849
Third Party Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2011-0862.html
Third Party Advisory vendor-advisory x_refsource_fedora
http://lists.fedoraproject.org/pipermail/package-announce/2011-July/062211.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/44888
Mailing List, Third Party Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2012/Feb/msg00000.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/45162
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/44681
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/44879
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/48091
Third Party Advisory vendor-advisory x_refsource_fedora
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061913.html
Issue Tracking, Third Party Advisory x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=709111
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/44633
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1025617
Release Notes, Third Party Advisory x_refsource_confirm
http://svn.apache.org/repos/asf/subversion/tags/1.6.17/CHANGES
Third Party Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2011-0861.html

Scores

EPSS 0.0848
EPSS Percentile 94.4%

Details

VulnCheck KEV 2011-06-06
InTheWild.io 2020-10-05
CWE
CWE-476
Status published
Products (9)
apache/subversion < 1.6.17
apple/mac_os_x < 10.7.3
canonical/ubuntu_linux 10.04
canonical/ubuntu_linux 10.10
canonical/ubuntu_linux 11.04
debian/debian_linux 5.0
debian/debian_linux 6.0
fedoraproject/fedora 14
fedoraproject/fedora 15
Published Jun 06, 2011
Tracked Since Feb 18, 2026