CVE-2018-14672
15.08.2019, 18:15
In ClickHouse before 18.12.13, functions for loading CatBoost models allowed path traversal and reading arbitrary files through error messages.
| Vendor | Product | Version |
|---|---|---|
| clickhouse | clickhouse | 𝑥 < 18.12.13 |
𝑥
= Vulnerable software versions
Ubuntu Releases