PT-2026-42136 · Libzypp · Libzypp
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
libzypp versions prior to 17.38.9-1.1
Description
The
PluginScript function attempts to use chroot to restrict the plugin to the repoManagerRoot. In standard configurations or when the --root option is used, this root is often set to / (the system root). When the chroot target is /, the operation has no effect, which allows a traversed path to execute host binaries, such as /bin/bash, with root privileges.Recommendations
Update to version 17.38.9-1.1.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Libzypp