CVE-2018-19637
Static temporary filename allows overwriting of files
Supportutils, before version 3.1-5.7.1, wrote data to static file /tmp/supp_log, allowing local attackers to overwrite files on systems without symlink protection
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Produtos afetados
SUSE · supportutilsQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →