A vulnerability in open build service allows remote attackers to gain access to source files even though source access is disabled. Affected releases are SUSE open build service up to and including version 2.1.15 (for 2.1) and before version 2.3.
References
Link | Resource |
---|---|
https://github.com/openSUSE/open-build-service/commit/5281e4bff9df31f1f91e22a0d1e9086b93b23d7e | Patch Third Party Advisory |
https://bugzilla.suse.com/show_bug.cgi?id=734003 | Issue Tracking |
Configurations
Information
Published : 2018-06-11 08:29
Updated : 2019-10-09 16:03
NVD link : CVE-2011-4181
Mitre link : CVE-2011-4181
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
opensuse
- open_build_service