A relative path traversal in the "keyhint" option in repomd.xml parsing of libzypp before 17.38.12 can be used by attackers able to supply a malicious repository to inject or overwrite files in the target system as root.
A relative path traversal in the "keyhint" option in repomd.xml parsing of libzypp before 17.38.12 can be used by attackers able to supply a malicious repository to inject or overwrite files in the target system as root.
Why this VPI (explainable, experimental)
VPI breakdown
| Impact | 84.00 |
| Exploitation signal(PoC exists) | ×1.20 |
| VPI | 100.00 |
VPI formula vpi-v1