First published: Mon Jun 11 2018(Updated: )
A vulnerability in open build service allows remote attackers to gain access to source files even though source access is disabled. Affected releases are SUSE open build service up to and including version 2.1.15 (for 2.1) and before version 2.3.
Credit: meissner@suse.de
Affected Software | Affected Version | How to fix |
---|---|---|
openSUSE Open Build Service | >=2.1.0<2.1.16 |
https://github.com/openSUSE/open-build-service/commit/5281e4bff9df31f1f91e22a0d1e9086b93b23d7e
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4181 is a vulnerability in open build service that allows remote attackers to gain access to source files even though source access is disabled.
Affected releases are SUSE open build service up to and including version 2.1.15 (for 2.1) and before version 2.3.
CVE-2011-4181 has a severity value of 7.5 (high).
To fix CVE-2011-4181, update SUSE open build service to version 2.1.16 or later.
You can find more information about CVE-2011-4181 at the following references: [Reference 1](https://github.com/openSUSE/open-build-service/commit/5281e4bff9df31f1f91e22a0d1e9086b93b23d7e), [Reference 2](https://bugzilla.suse.com/show_bug.cgi?id=734003).