PT-2018-6029 · Borg+1 · Borg+1

CVE-2017-15914

·

Published

2018-02-08

·

Updated

2024-04-04

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Borg servers versions 1.1.x before 1.1.3
Description: The issue is related to an incorrect implementation of access controls, which enables remote users to override repository restrictions.
Recommendations: For versions 1.1.x before 1.1.3, update to version 1.1.3 or later to resolve the issue.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2017-3587
CVE-2017-15914
GHSA-8Q8V-28RM-QW4W
OPENSUSE-SU-2024:10659-1
PYSEC-2018-105

Affected Products

Alt Linux
Borg