Oval Definition:oval:org.opensuse.security:def:202241722
Revision Date:2023-06-22Version:1
Title:CVE-2022-41722
Description:

A path traversal vulnerability exists in filepath.Clean on Windows. On Windows, the filepath.Clean function could transform an invalid path such as "a/../c:/b" into the valid path "c:\b". This transformation of a relative (if invalid) path into an absolute path could enable a directory traversal attack. After fix, the filepath.Clean function transforms this path into the relative (but still invalid) path ".\c:\b".
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2022-41722
SUSE CVE-2022-41722
SUSE-CU-2023:674-1
SUSE-SU-2023:0733-1
SUSE-SU-2023:0735-1
Platform(s):SUSE Linux Enterprise Desktop 15 SP5
SUSE Linux Enterprise High Performance Computing 15 SP5
SUSE Linux Enterprise Module for Development Tools 15 SP5
SUSE Linux Enterprise Server 15 SP5
SUSE Linux Enterprise Server for SAP Applications 15 SP5
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 15 SP5 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP5 is installed
  • OR SUSE Linux Enterprise Module for Development Tools 15 SP5 is installed
  • OR SUSE Linux Enterprise Server 15 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP5 is installed
  • AND Package Information
  • go1.19-1.19.9-150000.1.31.1 is installed
  • OR go1.19-doc-1.19.9-150000.1.31.1 is installed
  • OR go1.19-race-1.19.9-150000.1.31.1 is installed
  • OR go1.20-1.20.4-150000.1.11.1 is installed
  • OR go1.20-doc-1.20.4-150000.1.11.1 is installed
  • OR go1.20-race-1.20.4-150000.1.11.1 is installed
  • BACK