First published: Tue Jul 14 2020(Updated: )
Sylabs Singularity 3.5.0 through 3.5.3 fails to report an error in a Status Code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sylabs Singularity | >=3.5.0<=3.5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-13846.
The severity of CVE-2020-13846 is high with a CVSS score of 7.5.
Sylabs Singularity versions 3.5.0 through 3.5.3 are affected by CVE-2020-13846.
CVE-2020-13846 allows attackers to avoid error reporting in a Status Code, potentially leading to security vulnerabilities.
Yes, you can find references for CVE-2020-13846 at the following links: [Reference 1](http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00046.html), [Reference 2](http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00059.html), [Reference 3](http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00053.html).