Beveiligingsadvies

CVE-2017-7436

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-03-01 19:00:00
Laatst bijgewerkt 2024-09-16 19:09:24
Toegewezen door microfocus
CVSS-score 8.1
Status PUBLISHED

Beschrijving

In libzypp before 20170803 it was possible to retrieve unsigned packages without a warning to the user which could lead to man in the middle or malicious servers to inject malicious RPM packages into a users system.