UBUNTU-CVE-2011-4181

Source
https://ubuntu.com/security/CVE-2011-4181
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2011/UBUNTU-CVE-2011-4181.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2011-4181
Upstream
  • CVE-2011-4181
Withdrawn
2025-07-18T16:42:44Z
Published
2018-06-11T15:29:00Z
Modified
2025-07-16T08:10:31.669785Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
  • 4.3 (Medium) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

A vulnerability in open build service allows remote attackers to gain access to source files even though source access is disabled. Affected releases are SUSE open build service up to and including version 2.1.15 (for 2.1) and before version 2.3.

References

Affected packages

Ubuntu:18.04:LTS / open-build-service

Package

Name
open-build-service
Purl
pkg:deb/ubuntu/open-build-service@2.7.4-2?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.7.4-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.7.4-2",
            "binary_name": "obs-api"
        },
        {
            "binary_version": "2.7.4-2",
            "binary_name": "obs-productconverter"
        },
        {
            "binary_version": "2.7.4-2",
            "binary_name": "obs-server"
        },
        {
            "binary_version": "2.7.4-2",
            "binary_name": "obs-utils"
        },
        {
            "binary_version": "2.7.4-2",
            "binary_name": "obs-worker"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2011/UBUNTU-CVE-2011-4181.json"