DescriptionNextcloud Server before 12.0.8 and 13.0.3 suffers from improper checks of dropped permissions for incoming shares allowing a user to still request previews for files it should not have access to.
Overall state of this security issue: Does not affect SUSE products
This issue is currently rated as having not set severity.SUSE Bugzilla entry: 1100343 [RESOLVED / FIXED] SUSE Security Advisories:
- openSUSE-SU-2018:1924-1, published Wed, 11 Jul 2018 21:07:57 +0200 (CEST)
List of released packages
|Product(s)||Fixed package version(s)||References|
|openSUSE Leap 15.0|| ||Patchnames:
|openSUSE Leap 42.3|| ||Patchnames: