Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-7435

Опубликовано: 01 мар. 2018
Источник: debian

Описание

In libzypp before 20170803 it was possible to add unsigned YUM repositories without warning to the user that could lead to man in the middle or malicious servers to inject malicious RPM packages into a users system.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libzyppfixed17.3.1-1package
libzyppignoredjessiepackage

Связанные уязвимости

CVSS3: 8.1
ubuntu
почти 8 лет назад

In libzypp before 20170803 it was possible to add unsigned YUM repositories without warning to the user that could lead to man in the middle or malicious servers to inject malicious RPM packages into a users system.

CVSS3: 8.1
nvd
почти 8 лет назад

In libzypp before 20170803 it was possible to add unsigned YUM repositories without warning to the user that could lead to man in the middle or malicious servers to inject malicious RPM packages into a users system.

CVSS3: 8.1
github
больше 3 лет назад

In libzypp before 20170803 it was possible to add unsigned YUM repositories without warning to the user that could lead to man in the middle or malicious servers to inject malicious RPM packages into a users system.

suse-cvrf
больше 8 лет назад

Security update for libzypp

suse-cvrf
больше 8 лет назад

Security update for libzypp, zypper