Micro Focus openSUSE是英国Micro Focus公司的一套基于Linux的自由操作系统。openSUSE Leap是openSUSE的一个版本。 Micro Focus openSUSE Leap 42.3版本和42.2版本的build包20171128之前版本中存在安全漏洞,该漏洞源于程序没有校验目录名称。攻击者可利用该漏洞向主机系统中的文件执行写入操作。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-14798 | local privilege escalation in SUSE postgresql init script | |
| CVE-2017-7435 | libzypp accepts unsigned 3rd party repo without warning | |
| CVE-2017-7436 | libzypp accepts unsigned packages even when configured to check signatures | |
| CVE-2017-9268 | open-build-service retrigger / wipebinaries hitting the wrong project bypassing access per | |
| CVE-2017-9269 | lack of keypinning in libzypp could lead to repository switching | |
| CVE-2017-9270 | post-auth arbitrary file write on cryptctl server | |
| CVE-2017-9271 | proxy credentials written to log files by zypper | |
| CVE-2017-9274 | osc executes spec code during "osc commit" | |
| CVE-2017-9286 | nextcloud package security issues with /srv/www/htdocs |
No comments yet