Oval Definition:oval:org.opensuse.security:def:20224515
Revision Date:2023-06-22Version:1
Title:CVE-2022-4515
Description:

A flaw was found in Exuberant Ctags in the way it handles the "-o" option. This option specifies the tag filename. A crafted tag filename specified in the command line or in the configuration file results in arbitrary command execution because the externalSortTags() in sort.c calls the system(3) function in an unsafe way.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2022-4515
SUSE CVE-2022-4515
SUSE-CU-2023:1095-1
SUSE-CU-2023:1097-1
SUSE-CU-2023:282-1
SUSE-CU-2023:292-1
SUSE-SU-2023:0224-1
SUSE-SU-2023:0225-1
Platform(s):SUSE Linux Enterprise Desktop 15 SP5
SUSE Linux Enterprise High Performance Computing 15 SP5
SUSE Linux Enterprise Module for Development Tools 15 SP5
SUSE Linux Enterprise Server 15 SP5
SUSE Linux Enterprise Server for SAP Applications 15 SP5
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 15 SP5 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP5 is installed
  • OR SUSE Linux Enterprise Module for Development Tools 15 SP5 is installed
  • OR SUSE Linux Enterprise Server 15 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP5 is installed
  • AND ctags-5.8-150000.3.3.1 is installed
  • BACK