First published: Fri Apr 01 2011(Updated: )
The aaa_base package before 11.3-8.9.1 in SUSE openSUSE 11.3, and before 11.4-54.62.1 in openSUSE 11.4, allows local users to gain privileges via shell metacharacters in a filename, related to tab expansion.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SUSE Linux | =11.3 | |
SUSE Linux | =11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0468 is rated as a medium severity vulnerability due to its potential for local privilege escalation.
To fix CVE-2011-0468, it is recommended to upgrade the aaa_base package to the latest version available in your openSUSE repositories.
CVE-2011-0468 affects local users of openSUSE 11.3 and 11.4 who have access to the system.
CVE-2011-0468 is a privilege escalation vulnerability involving improper handling of shell metacharacters in filenames.
CVE-2011-0468 was publicly disclosed in March 2011.