package/subversion: security bump to version 1.14.1
authorPeter Korsgaard <peter@korsgaard.com>
Thu, 11 Feb 2021 14:18:37 +0000 (15:18 +0100)
committerPeter Korsgaard <peter@korsgaard.com>
Fri, 12 Feb 2021 07:41:41 +0000 (08:41 +0100)
commit4109401acdb195d16c3f32219492ed53f83206b7
treea804d128def7736fbf0a1664d980519b920c1c8a
parentaa1ed2fc07c8e49905fd1cb1752556be55f05ba1
package/subversion: security bump to version 1.14.1

Fixes the following security issue:

CVE-2020-17525: Remote unauthenticated denial-of-service in Subversion
mod_authz_svn

Subversion's mod_authz_svn module will crash if the server is using
in-repository authz rules with the AuthzSVNReposRelativeAccessFile option
and a client sends a request for a non-existing repository URL.

For more details, see the advisory:
https://subversion.apache.org/security/CVE-2020-17525-advisory.txt

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/subversion/subversion.hash
package/subversion/subversion.mk