In open buildservice 2.6 before 2.6.3, 2.5 before 2.5.7 and 2.4 before 2.4.8 the source service patch application could generate non-standard files like symlinks or device nodes, which could allow buildservice users to break of confinement or cause denial of service attacks on the source service.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: microfocus
Published: 2018-03-02T20:00:00Z
Updated: 2024-09-16T23:56:32.388Z
Reserved: 2015-01-07T00:00:00
Link: CVE-2015-0796
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-03-02T20:29:00.207
Modified: 2024-11-21T02:23:43.580
Link: CVE-2015-0796
Redhat
No data.