Oval Definition:oval:org.opensuse.security:def:201718196
Revision Date:2022-06-30Version:1
Title:CVE-2017-18196
Description:

Leptonica 1.74.4 constructs unintended pathnames (containing duplicated path components) when operating on files in /tmp subdirectories, which might allow local users to bypass intended file restrictions by leveraging access to a directory located deeper within the /tmp directory tree, as demonstrated by /tmp/ANY/PATH/ANY/PATH/input.tif.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2017-18196
SUSE CVE-2017-18196
Platform(s):openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • leptonica-devel-1.80.0-1.9 is installed
  • OR leptonica-tools-1.80.0-1.9 is installed
  • OR liblept5-1.80.0-1.9 is installed
  • OR liblept5-32bit-1.80.0-1.9 is installed
  • BACK