Vulnerabilities (CVE)

Filtered by vendor Linaro Subscribe
Filtered by product Lava
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-12565 2 Debian, Linaro 2 Debian Linux, Lava 2019-09-18 6.5 MEDIUM 8.8 HIGH
An issue was discovered in Linaro LAVA before 2018.5.post1. Because of use of yaml.load() instead of yaml.safe_load() when parsing user data, remote code execution can occur.