RULE(RULE ID:312815)

Rule General Information
Release Date: 2016-07-12
Rule Name: Apache Subversion Mod_authz_svn COPY MOVE Denial of Service Vulnerability -4 (CVE-2016-2168)
Severity:
CVE ID:
Rule Protection Details
Description: The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a crafted header in a (1) MOVE or (2) COPY request, involving an authorization check.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Windows
Reference: SecurityFocusBID:89320
SecurityTrackerID:1035707
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://subversion.apache.org/security/CVE-2016-2168-advisory.txt