Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2016:2516-1

Опубликовано: 12 окт. 2016
Источник: suse-cvrf

Описание

Security update for python-suds-jurko

This update for python-suds-jurko fixes the following issues:

  • CVE-2013-2217: A temporary directory was used in an insecure fashion when initializing file-based URL cache. (boo#827568)

Список пакетов

openSUSE Leap 42.1
python-suds-jurko-0.6-4.1

Описание

cache.py in Suds 0.4, when tempdir is set to None, allows local users to redirect SOAP queries and possibly have other unspecified impact via a symlink attack on a cache file with a predictable name in /tmp/suds/.


Затронутые продукты
openSUSE Leap 42.1:python-suds-jurko-0.6-4.1

Ссылки