External Control of File Name or Path in osc - CVE-2019-3681

 

External Control of File Name or Path in osc - CVE-2019-3681

Published: December 29, 2022


Vulnerability identifier: #VU70539
CSH Severity: High
CVSS v4: 8.5 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-3681
CWE-ID: CWE-73
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to overwrite arbitrary files during file download.

The vulnerability exists due to application allows an attacker to control path of the files that are being downloaded. A remote attacker can change downloaded packages to overwrite arbitrary files on the system.


Affected software

osc
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP Applications
SUSE Linux Enterprise Software Development Kit
openEuler
osc
osc-help

How to mitigate CVE-2019-3681

Install updates from vendor's website.

osc - addressed in versions 0.162.1, 0.182.0-15.12.1
osc - update to 0.169.1-1
osc-help - update to 0.169.1-1

External References

Related Security Bulletins