CVE-2017-9274
EUVD-2017-1821001.03.2018, 20:29
A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| opensuse | obs-service-source_validator | 𝑥 < 0.7 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References