subversion - Advanced version control system

Property Value
Distribution Debian 8 (Jessie)
Repository Debian Main amd64
Package name subversion
Package version 1.8.10
Package release 6+deb8u6
Package architecture amd64
Package type deb
Installed size 4.36 KB
Download size 899.98 KB
Official Mirror
Apache Subversion, also known as svn, is a centralised version control
system.  Version control systems allow many individuals (who may be
distributed geographically) to collaborate on a set of files (source
code, websites, etc).  Subversion began with a CVS paradigm and
supports all the major features of CVS, but has evolved to support
many features that CVS users often wish they had.
This package includes the Subversion client (svn), repository
administration tools (svnadmin, svnlook) and a network server (svnserve).


Name Value
libapr1 >= 1.4.8-2~
libaprutil1 >= 1.2.7+dfsg
libc6 >= 2.4
libldap-2.4-2 >= 2.4.7
libsasl2-2 -
libsvn1 = 1.8.10-6+deb8u6


Type URL
Binary Package subversion_1.8.10-6+deb8u6_amd64.deb
Source Package subversion

Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install subversion deb package:
    # sudo apt-get install subversion




2018-02-26 - James McCoy <>
subversion (1.8.10-6+deb8u6) jessie; urgency=medium
* Backport patches/perl-swig-crash from upstream to fix crashes with Perl
bindings, commonly seen when using git-svn (Closes: #780246, #534763).
2017-08-09 - James McCoy <>
subversion (1.8.10-6+deb8u5) jessie-security; urgency=high
* patches/CVE-2016-8734: Unrestricted XML entity expansion in HTTP clients
* patches/CVE-2017-9800: Arbitrary code execution on clients through
malicious svn+ssh URLs in svn:externals and svn:sync-from-url
2016-04-27 - James McCoy <>
subversion (1.8.10-6+deb8u4) jessie-security; urgency=high
+ patches/CVE-2016-2167: svnserve/sasl may authenticate users using the
wrong realm
+ patches/CVE-2016-2168: Remotely triggerable DoS vulnerability in
mod_authz_svn during COPY/MOVE authorization check
2016-03-11 - James McCoy <>
subversion (1.8.10-6+deb8u3) jessie; urgency=medium
* patches/r1701440-kwallet-segfault: Fix segfault when using kwallet to
store authentication information.  (Closes: #736879)
2015-12-15 - James McCoy <>
subversion (1.8.10-6+deb8u2) jessie-security; urgency=high
* patches/r1708699-mod_auth_ntlm-kerb-fix: Fix regression interacting with
mod_auth_kerb/mod_auth_ntlm in due to CVE-2015-3814 patch.  (Closes:
* patches/CVE-2015-5343: Heap overflow and out-of-bounds read in mod_dav_svn
2015-08-08 - James McCoy <>
subversion (1.8.10-6+deb8u1) jessie-security; urgency=high
* Add (Build-)Depends on apache2 packages necessary for security fixes.
* patches/CVE-2015-3814: Mixed anonymous/authenticated path-based authz with
httpd 2.4
* patches/CVE-2015-3817: svn_repos_trace_node_locations() reveals paths
hidden by authz
2015-03-31 - James McCoy <>
subversion (1.8.10-6) unstable; urgency=high
* patches/CVE-2015-0202: Excessive memory use with certain REPORT requests
against mod_dav_svn with FSFS repositories
* patches/CVE-2015-0248: Assertion DoS vulnerability for certain mod_dav_svn
and svnserve requests with dynamically evaluated revision numbers
* patches/CVE-2015-0251: mod_dav_svn allows spoofing svn:author property
values for new revisions
2014-12-17 - James McCoy <>
subversion (1.8.10-5) unstable; urgency=medium
* patches/CVE-2014-8108: mod_dav_svn DoS vulnerability with invalid virtual
transaction names  (Closes: #773315)
* patches/CVE-2014-3580: mod_dav_svn DoS vulnerability with invalid REPORT
requests (Closes: #773263)
2014-11-10 - James McCoy <>
subversion (1.8.10-4) unstable; urgency=medium
* control: Use "dh_install --list-missing" instead of --fail-missing to
avoid a FTBFS with parallel builds.  (Closes: #768903)
2014-10-25 - James McCoy <>
subversion (1.8.10-3) unstable; urgency=medium
* Add a NEWS item describing that 1.7.x and later do not support having a
working copy which spans multiple filesystems.  (Closes: #766285)
* rules: Needs more MAN3EXT so generated swig-pl Makefile never installs
files to debian/tmp with wrong extensions.
* Move some less frequently used tools to subversion-tools and include the
fsfs-* tools.  (Closes: #764689)
* Switch from specifying gcj as the Java implementation to default-jdk.
(Closes: #737527, #421400)
- Remove patches/java-build

