CVE-2013-1910: Input Validation
Published Oct 31, 2019
·Updated
yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other unspecified impact via a Trojan horse file in the metadata of a remote repository.
Affected Software
5 affected components
debian/yum
baseurl yum=3.4.3
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Event History
Oct 31, 2019
CVE Published
via MITRE·06:36 PM
Data Sourced
via MITRE·06:36 PM
DescriptionWeakness
Aug 6, 2024
Data Sourced
via Debian·03:25 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-1910?
CVE-2013-1910 is classified with a high severity as it can lead to denial of service attacks.
2
How do I fix CVE-2013-1910?
To fix CVE-2013-1910, update to the latest version of yum that addresses this vulnerability.
3
Which versions of yum are affected by CVE-2013-1910?
CVE-2013-1910 affects yum version 3.4.3 and prior versions.
4
What impact can CVE-2013-1910 have on my system?
CVE-2013-1910 can cause denial of service and potentially allow for other unspecified attacks on your system.
5
Is CVE-2013-1910 specific to any operating system?
Yes, CVE-2013-1910 specifically impacts Debian Linux systems, particularly versions 8.0, 9.0, and 10.0 with yum.