vulnerability
SUSE: CVE-2018-12471: SUSE Linux Security Advisory
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:N/AC:L/Au:N/C:P/I:N/A:P) | Sep 27, 2018 | Sep 28, 2018 | Feb 4, 2022 |
Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:P)
Published
Sep 27, 2018
Added
Sep 28, 2018
Modified
Feb 4, 2022
Description
A External Entity Reference ('XXE') vulnerability in SUSE Linux SMT allows remote attackers to read data from the server or cause DoS by referencing blocking elements. Affected releases are SUSE Linux SMT: versions prior to 3.0.37.
Solutions
suse-upgrade-perl-file-touchsuse-upgrade-res-signingkeyssuse-upgrade-smtsuse-upgrade-smt-hasuse-upgrade-smt-supportsuse-upgrade-yast2-smt
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.