Описание
A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs.
Ссылки
Уязвимые конфигурации
Конфигурация 1Версия до 0.7 (исключая)
cpe:2.3:a:opensuse:obs-service-source_validator:*:*:*:*:*:*:*:*
EPSS
Процентиль: 64%
0.00474
Низкий
7.8 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-78
CWE-78
Связанные уязвимости
CVSS3: 7.8
ubuntu
почти 8 лет назад
A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs.
CVSS3: 7.8
debian
почти 8 лет назад
A shell command injection in the obs-service-source_validator before 0 ...
CVSS3: 7.8
github
больше 3 лет назад
A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs.
EPSS
Процентиль: 64%
0.00474
Низкий
7.8 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-78
CWE-78