Oval Definition:oval:org.opensuse.security:def:68915
Revision Date:2020-12-01Version:1
Title:Security update for ant (Moderate)
Description:

This update for ant fixes the following issues:

Security issue fixed:

- CVE-2018-10886: Fixed a path traversal vulnerability in malformed zip file paths, which allowed arbitrary file writes and could potentially lead to code execution (bsc#1100053).

Non-security issues fixed:

- Add rhino to the ant-apache-bsf optional tasks (bsc#1134001). - Remove jakarta-commons-logging dependencies (bsc#1133997). - Use apache-commons-logging in optional tasks
Family:unixClass:patch
Status:Reference(s):1100053
1133997
1134001
1172004
CVE-2018-10886
CVE-2019-19727
CVE-2020-12693
Platform(s):SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • ant-antlr-1.9.10-3.6 is installed
  • OR ant-apache-xalan2-1.9.10-3.6 is installed
  • OR ant-commons-net-1.9.10-3.6 is installed
  • OR ant-jsch-1.9.10-3.6 is installed
  • OR ant-testutil-1.9.10-3.6 is installed
  • BACK