A Improper Neutralization of CRLF Sequences vulnerability in Open Build Service allows remote attackers to cause deletion of directories by tricking obs-service-refresh_patches to delete them. Affected releases are openSUSE Open Build Service: versions prior to d6244245dda5367767efc989446fe4b5e4609cce.
2018-10-09T13:29:00.620
2024-11-21T03:45:17.697
Modified
CVSSv3.0: 3.5 (LOW)
AV:N/AC:L/Au:N/C:N/I:P/A:P
10.0
4.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | opensuse | leap | 15.0 | Yes |
| Operating System | opensuse | leap | 42.3 | Yes |