First published: Thu Jan 10 2019(Updated: )
modulemd 1.3.1 and earlier uses an unsafe function for processing externally provided data, leading to remote code execution.
Credit: patrick@puiterwijk.org patrick@puiterwijk.org
Affected Software | Affected Version | How to fix |
---|---|---|
pip/modulemd | <1.3.2 | 1.3.2 |
Redhat Modulemd | <=1.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.