CVE Published: 09/10/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: microfocus |
Vendor: openSUSE |
Product: Open Build Service Status : PUBLISHED
CVE-2018-12477 Description
A Improper Neutralization of CRLF Sequences vulnerability in Open Build Service allows remote attackers to cause deletion of directories by tricking obs-service-refresh_patches to delete them. Affected releases are openSUSE Open Build Service: versions prior to d6244245dda5367767efc989446fe4b5e4609cce.