VYPR

rpm package

suse/cpio&distro=SUSE Linux Enterprise Server for SAP Applications 15 SP3

pkg:rpm/suse/cpio&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3

Vulnerabilities (1)

  • CVE-2023-7207Jan 5, 2024
    affected < 2.12-150000.3.12.1fixed 2.12-150000.3.12.1

    Debian's cpio contains a path traversal vulnerability. This issue was introduced by reverting CVE-2015-1197 patches which had caused a regression in --no-absolute-filenames. Upstream has since provided a proper fix to --no-absolute-filenames.