The API in SUSE openSUSE Build Service (OBS) 2.0.x before 2.0.8 and 2.1.x before 2.1.6 allows attackers to bypass intended write-access restrictions and modify a (1) package or (2) project via unspecified vectors.
References
Link | Resource |
---|---|
http://news.opensuse.org/2011/03/02/build-service-team-releases-new-versions-fixing-security-problems/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2011-04-09 19:51
Updated : 2011-04-20 21:00
NVD link : CVE-2011-0466
Mitre link : CVE-2011-0466
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
novell
- opensuse_build_service