CVE-2018-14672
15.08.2019, 18:15
In ClickHouse before 18.12.13, functions for loading CatBoost models allowed path traversal and reading arbitrary files through error messages.
Vendor | Product | Version |
---|---|---|
yandex | clickhouse | 𝑥 < 18.12.13 |
𝑥
= Vulnerable software versions

Ubuntu Releases