← Back
CVE-2018-10897
A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to sanitize paths in remote repository configuration file...
References
- advisory http://www.securitytracker.com/id/1041594
- advisory https://access.redhat.com/errata/RHSA-2018:2284
- advisory https://access.redhat.com/errata/RHSA-2018:2285
- advisory https://access.redhat.com/errata/RHSA-2018:2626
- advisory https://github.com/rpm-software-management/yum-utils/pull/43
- advisory https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0
- patch https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10897
- patch https://github.com/rpm-software-management/yum-utils/commit/6a8de061f8fdc885e74ebe8c94625bf53643b71c
- patch https://github.com/rpm-software-management/yum-utils/commit/7554c0133eb830a71dc01846037cc047d0acbc2c