First published: Wed Mar 30 2011(Updated: )
SUSE openSUSE Factory assigns ownership of the /var/log/cobbler/ directory tree to the web-service user account, which might allow local users to gain privileges by leveraging access to this account during root filesystem operations by the Cobbler daemon.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell Opensuse Factory |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.