CVE-2022-31254: rmt-server-pubcloud allows to escalate from user _rmt to root
A Incorrect Default Permissions vulnerability in rmt-server-regsharing service of SUSE Linux Enterprise Server for SAP 15, SUSE Linux Enterprise Server for SAP 15-SP1, SUSE Manager Server 4.1; openSUSE Leap 15.3, openSUSE Leap 15.4 allows local attackers with access to the rmt user to escalate to root. This issue affects: SUSE Linux Enterprise Server for SAP 15 rmt-server versions prior to 2.10. SUSE Linux Enterprise Server for SAP 15-SP1 rmt-server versions prior to 2.10. SUSE Manager Server 4.1 rmt-server versions prior to 2.10. openSUSE Leap 15.3 rmt-server versions prior to 2.10. openSUSE Leap 15.4 rmt-server versions prior to 2.10.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-31254?
CVE-2022-31254 is an Incorrect Default Permissions vulnerability in the rmt-server-regsharing service of SUSE Linux Enterprise Server for SAP 15, SUSE Linux Enterprise Server for SAP 15-SP1, SUSE Manager Server 4.1; openSUSE Leap 15.3, openSUSE Leap 15.4 that allows local attackers with access to the _rmt user to escalate privileges.
How severe is CVE-2022-31254?
CVE-2022-31254 has a severity rating of 7.8 (high).
Which software versions are affected by CVE-2022-31254?
CVE-2022-31254 affects the following software versions: SUSE Linux Enterprise Server for SAP 15, SUSE Linux Enterprise Server for SAP 15-SP1, SUSE Manager Server 4.1; openSUSE Leap 15.3, openSUSE Leap 15.4.
How can a local attacker exploit CVE-2022-31254?
A local attacker with access to the _rmt user can exploit CVE-2022-31254 to escalate privileges.
Is there a fix available for CVE-2022-31254?
It is recommended to apply the latest patches and updates provided by the vendor to fix CVE-2022-31254.