Security Advisory

CVE-2018-12477

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-10-09 13:00:00
Last updated 2024-09-16 20:32:32
Assigner microfocus
State PUBLISHED

Description

A Improper Neutralization of CRLF Sequences vulnerability in Open Build Service allows remote attackers to cause deletion of directories by tricking obs-service-refresh_patches to delete them. Affected releases are openSUSE Open Build Service: versions prior to d6244245dda5367767efc989446fe4b5e4609cce.