Bugzilla – Bug List
Home
|
New
|
Browse
|
Search
|
[?]
|
Reports
|
Requests
|
IDP Log In
|
Forgot Password
Fri Jul 26 2024 15:52:25 UTC
If you find a turtle on a fence post, you know it didn't get there by itself.
Hide Search Description
Bug ID:
1143664, 1143670, 1143663, 1143659, 1143662, 1122683, 1143668, 1143655, 1122675, 1143661, 1143658, 1143667, 1143652
13 bugs found.
ID
▼
Product
Comp
Assignee
Status
Resolution
Summary
Changed
1143670
SUSE Security Incidents
Audits
adrian.schroeter
NEW
---
AUDIT-FIND: obs-service-download_url: certificate validation force-disabled
2022-02-24
1143668
SUSE Security Incidents
Audits
adrian.schroeter
NEW
---
AUDIT-FIND: obs-service-renderspec: path traversal
2020-11-24
1143667
SUSE Security Incidents
Audits
adrian.schroeter
RESO
UPST
AUDIT-FIND: obs-service-github_tarballs: plain-text password storage
2022-02-24
1143664
SUSE Security Incidents
Audits
adrian.schroeter
NEW
---
AUDIT-FIND: obs-service-git_tarballs: path traversal
2020-11-27
1143663
SUSE Security Incidents
Audits
adrian.schroeter
NEW
---
AUDIT-FIND: obs-service-refresh-patches: calls into osc and quilt
2023-10-12
1143662
SUSE Security Incidents
Audits
adrian.schroeter
RESO
INVA
AUDIT-FIND: obs-service-python_sdist: runs untrusted setup.py
2022-02-24
1143661
SUSE Security Incidents
Audits
adrian.schroeter
NEW
---
AUDIT-FIND: obs-service-bundle_gems: calls cpio instead of bsdtar
2020-11-25
1143659
SUSE Security Incidents
Audits
adrian.schroeter
RESO
FIXE
AUDIT-FIND: obs-service-extract_file: calls cpio instead of bsdtar
2020-11-25
1143658
SUSE Security Incidents
Audits
adrian.schroeter
NEW
---
AUDIT-FIND: obs-service-tar_scm: XML injection
2022-02-24
1143655
SUSE Security Incidents
Audits
dmueller
NEW
---
AUDIT-FIND: obs-service-set_version: checksum verification disabled
2022-02-24
1143652
SUSE Security Incidents
Incidents
adrian.schroeter
NEW
---
AUDIT-FIND: obs-service-set_version: path traversal
2024-05-17
1122683
openSUSE Build Service
osc
daniel.mach
RESO
UPST
AUDIT-FIND: osc: deprecate insecure APIs
2024-06-28
1122675
openSUSE Build Service
osc
marco.strigl
RESO
FIXE
VUL-0: CVE-2019-3681: osc: stores downloaded (supposed) RPM in network-controlled filesystem paths
2023-03-15
13 bugs found.
Change Columns
Edit Search
as