CVE-2025-53882: The logrotate configuration in the python-mailman of openSUSE allows the mailman user to sent SIGHUP to arbitrary proceess
A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSE mailman3 package allows the mailman user to sent SIGHUP to arbitrary processes. This issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53882?
CVE-2025-53882 has a critical severity level due to its potential for escalation from mailman to root access.
How do I fix CVE-2025-53882?
To fix CVE-2025-53882, you should update the openSUSE mailman3 package to version 3.3.10-2.1 or higher.
What version of openSUSE mailman3 is affected by CVE-2025-53882?
CVE-2025-53882 affects openSUSE mailman3 versions prior to 3.3.10-2.1.
What kind of vulnerability is CVE-2025-53882?
CVE-2025-53882 is a security vulnerability that involves a reliance on untrusted inputs in a security decision.
Can CVE-2025-53882 compromise server security?
Yes, CVE-2025-53882 can compromise server security by allowing potential escalation from mailman to root.