Bug 1100972 - (CVE-2018-10897) VUL-0: CVE-2018-10897: yum-utils: reposync: improper path validation may lead to directory traversal
(CVE-2018-10897)
VUL-0: CVE-2018-10897: yum-utils: reposync: improper path validation may lead...
Status: RESOLVED FIXED
Classification: Novell Products
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents
unspecified
Other Other
: P3 - Medium : Normal
: ---
Assigned To: Security Team bot
Security Team bot
https://smash.suse.de/issue/210492/
CVSSv3:SUSE:CVE-2018-10897:7.8:(AV:L...
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2018-07-12 06:02 UTC by Marcus Meissner
Modified: 2022-04-26 09:38 UTC (History)
7 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Marcus Meissner 2018-07-12 06:02:34 UTC
via rh bugzilla

Reposync fails to sanitize paths in remote repository configuration files. If an attacker controls a repository a user is syncing with, the attacker may be able to copy files outside of the destination directory via path traversal. If reposync is running with heightened privileges on a targeted system, this flaw could potentially result in system compromise via the overwriting of critical system files.

References:
https://bugzilla.redhat.com/show_bug.cgi?id=1600221
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-10897
Comment 11 Christian Almeida de Oliveira 2022-04-22 09:31:19 UTC
based on comment #10, back to the Security team.
Comment 12 Gabriele Sonnu 2022-04-26 09:38:06 UTC
Done.