CVE-2013-1910: Baseurl Yum

Critical severity, CVSS 9.8. EPSS: 2.6% chance of exploitation in the next 30 days.

yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other unspecified impact via a Trojan horse file in the metadata of a remote repository.

Affected products

  • Baseurl Yum: version 3.4.3 only
  • Debian Debian Linux: version 8.0 only; version 9.0 only; version 10.0 only

Published 2019-10-31. Last modified 2026-06-16.