CVE-2026-44942

A path traversal in handling the "path" component of .repo files processed by libzypp before 17.38.13 in the 17.x series, or before 16.22.19 could be used by attackers to fill directories on the system outside of the zypp cache with content.
Configurations

No configuration.

History

18 Jun 2026, 14:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-18 14:17

Updated : 2026-06-22 18:32


NVD link : CVE-2026-44942

Mitre link : CVE-2026-44942

CVE.ORG link : CVE-2026-44942


JSON object : View

Products Affected

No product.

CWE
CWE-24

Path Traversal: '../filedir'