diff --git a/subversion.changes b/subversion.changes index bfebb7f..7292ed9 100644 --- a/subversion.changes +++ b/subversion.changes @@ -10,6 +10,9 @@ Fri Jan 18 14:03:54 UTC 2019 - astieger@suse.com * Server: fix a crash in mod_http2 * JavaHL bindings: Fix crash in client code when using external diff +- Fixed a vulnerability that allowed malicious SVN clients to trigger a crash + in mod_dav_svn by omitting the root path from a recursive directory listing + request (CVE-2018-11803 bsc#1122842) ------------------------------------------------------------------- Fri Jan 11 09:21:41 UTC 2019 - Tomáš Chvátal diff --git a/subversion.spec b/subversion.spec index 9b1ec05..05dda55 100644 --- a/subversion.spec +++ b/subversion.spec @@ -13,7 +13,7 @@ # license that conforms to the Open Source Definition (Version 1.9) # published by the Open Source Initiative. -# Please submit bugfixes or comments via http://bugs.opensuse.org/ +# Please submit bugfixes or comments via https://bugs.opensuse.org/ #