Attackers could put the special files in .osc into the actual package sources (e.g. _apiurl). This allows the attacker to change the configuration of osc for the victim
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Osc | Ubuntu | focal | * |
| Osc | Ubuntu | oracular | * |
| Osc | Ubuntu | upstream | * |
References