CVE-2018-10897
Last modified
CVE-2018-10897 is a high-severity vulnerability rated 8.1/10 on the CVSS scale. A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to sanitize paths in remote repository configuration files. If an attacker controls a repository, they may be able to copy files outside of the destination directory on the targeted system via path traversal. EPSS estimates a 5.73% chance of exploitation in the next 30 days.
Description
A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to sanitize paths in remote repository configuration files. If an attacker controls a repository, they may be able to copy files outside of the destination directory on the targeted system via path traversal. If reposync is running with heightened privileges on a targeted system, this flaw could potentially result in system compromise via the overwriting of critical system files. Version 1.1.31 and older are believed to be affected.
Metrics
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Rpm | Yum-Utils | <= 1.1.31 |
| Redhat | Virtualization | 4.0 |
| Redhat | Enterprise Linux Desktop | 6.0 |
| Redhat | Enterprise Linux Desktop | 7.0 |
| Redhat | Enterprise Linux Server | 6.0 |
| Redhat | Enterprise Linux Server | 7.0 |
| Redhat | Enterprise Linux Workstation | 6.0 |
| Redhat | Enterprise Linux Workstation | 7.0 |
References
- http://www.securitytracker.com/id/1041594Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2018:2284Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2285Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2626Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10897Issue Tracking, Patch, Third Party Advisory
- https://github.com/rpm-software-management/yum-utils/commit/6a8de061f8fdc885e74ebe8c94625bf53643b71cPatch, Third Party Advisory
- https://github.com/rpm-software-management/yum-utils/commit/7554c0133eb830a71dc01846037cc047d0acbc2cPatch, Third Party Advisory
- https://github.com/rpm-software-management/yum-utils/pull/43Third Party Advisory
- http://www.securitytracker.com/id/1041594Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2018:2284Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2285Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2626Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10897Issue Tracking, Patch, Third Party Advisory
- https://github.com/rpm-software-management/yum-utils/commit/6a8de061f8fdc885e74ebe8c94625bf53643b71cPatch, Third Party Advisory
- https://github.com/rpm-software-management/yum-utils/commit/7554c0133eb830a71dc01846037cc047d0acbc2cPatch, Third Party Advisory
- https://github.com/rpm-software-management/yum-utils/pull/43Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-10897?
How severe is CVE-2018-10897?
How do I fix CVE-2018-10897?
Are you affected by CVE-2018-10897?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
