CVE-2017-1002157: Red Hat Modulemd

Critical severity, CVSS 9.8. EPSS: 2.9% chance of exploitation in the next 30 days.

modulemd 1.3.1 and earlier uses an unsafe function for processing externally provided data, leading to remote code execution.

Affected products

  • Red Hat Modulemd: up to and including 1.3.1

Published 2019-01-10. Last modified 2026-06-17.