External Control of File Name or Path in osc - CVE-2019-3681
Published: December 29, 2022
Vulnerability identifier: #VU70539
CSH Severity: High
CVSS v4: 8.5 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-3681
CWE-ID: CWE-73
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to overwrite arbitrary files during file download.
The vulnerability exists due to application allows an attacker to control path of the files that are being downloaded. A remote attacker can change downloaded packages to overwrite arbitrary files on the system.
Affected software
osc
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP Applications
SUSE Linux Enterprise Software Development Kit
openEuler
osc
osc-help
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP Applications
SUSE Linux Enterprise Software Development Kit
openEuler
osc
osc-help
How to mitigate CVE-2019-3681
Install updates from vendor's website.
osc - addressed in versions 0.162.1, 0.182.0-15.12.1
osc - update to 0.169.1-1
osc-help - update to 0.169.1-1
osc - update to 0.169.1-1
osc-help - update to 0.169.1-1