openSUSE-SU-2021:0274-1
Dashboard / Vulnerabilities / openSUSE-SU-2021:0274-1
openSUSE-SU-2021:0274-1
Summary: Security update for nextcloud
Details: This update for nextcloud fixes the following issues: - nextcloud was upgraded to version 20.0.7 - CVE-2020-8294: Fixed a missing link validation (boo#1181803) - CVE-2020-8295: Fixed a denial of service attack (boo#1181804) - CVE-2020-8293: Fixed an input validation issue (boo#1181445) This update was imported from the openSUSE:Leap:15.2:Update update project.
References: https://lists.opensuse.org/archives/list/[email protected]/thread/IKPTLKOGRYW4NVA4XTNRDXSK534SPTR2/, https://bugzilla.suse.com/1181445, https://bugzilla.suse.com/1181803, https://bugzilla.suse.com/1181804, https://www.suse.com/security/cve/CVE-2020-8293, https://www.suse.com/security/cve/CVE-2020-8294, https://www.suse.com/security/cve/CVE-2020-8295
Affected packages
Package
Name: nextcloud
Purl: pkg:rpm/suse/nextcloud&distro=SUSE%20Package%20Hub%2015%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
