The set_version script as shipped with obs-service-set_version is a source validator for the Open Build Service (OBS). In versions prior to 0.5.3-1.1 this script did not properly sanitize the input provided by the user, allowing for code execution on the executing server.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: microfocus

Published: 2018-06-08T17:00:00Z

Updated: 2024-09-16T16:33:31.630Z

Reserved: 2013-12-28T00:00:00

Link: CVE-2014-0593

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-06-08T17:29:00.380

Modified: 2024-11-21T02:02:27.703

Link: CVE-2014-0593

cve-icon Redhat

No data.