{"id":"CVE-2019-25018","details":"In the rcp client in MIT krb5-appl through 1.0.3, malicious servers could bypass intended access restrictions via the filename of . or an empty filename, similar to CVE-2018-20685 and CVE-2019-7282. The impact is modifying the permissions of the target directory on the client side. NOTE: MIT krb5-appl is not supported upstream but is shipped by a few Linux distributions. The affected code was removed from the supported MIT Kerberos 5 (aka krb5) product many years ago, at version 1.8.","modified":"2026-07-08T19:50:36.726300Z","published":"2021-02-02T18:15:11.187Z","related":["SUSE-SU-2021:0527-1"],"references":[{"type":"REPORT","url":"https://bugzilla.suse.com/show_bug.cgi?id=1131109"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/krb5/krb5-appl","events":[{"introduced":"0"},{"last_affected":"a6c9e0baea1a1030241fe00b0431e5ab454c5fa3"}],"database_specific":{"cpe":"cpe:2.3:a:mit:krb5-appl:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"1.0.3"}],"source":"CPE_RANGE"}}],"versions":["krb5-appl-1.0.3"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-25018.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"}]}