CVE-2024-22029
tomcat packaging allows for escalation to root from tomcat user
Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Produtos afetados
SUSE · Container suse/manager/5.0/x86_64/server:5.0.0-beta1.2.122SUSE · openSUSE Leap 15.5SUSE · openSUSE TumbleweedSUSE · SUSE Enterprise Storage 7.1SUSE · SUSE Linux Enterprise High Performance Computing 15 SP2-LTSSSUSE · SUSE Linux Enterprise High Performance Computing 15 SP3-LTSSSUSE · SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOSSUSE · SUSE Linux Enterprise High Performance Computing 15 SP4-LTSSSUSE · SUSE Linux Enterprise High Performance Computing 15 SP5SUSE · SUSE Linux Enterprise High Performance Computing 15 SP6SUSE · SUSE Linux Enterprise Module for Web and Scripting 15 SP5SUSE · SUSE Linux Enterprise Module for Web and Scripting 15 SP6SUSE · SUSE Linux Enterprise Server 15 SP2-LTSSSUSE · SUSE Linux Enterprise Server 15 SP3-LTSSSUSE · SUSE Linux Enterprise Server 15 SP4-LTSSSUSE · SUSE Linux Enterprise Server 15 SP5SUSE · SUSE Linux Enterprise Server 15 SP6SUSE · SUSE Linux Enterprise Server for SAP Applications 15 SP2SUSE · SUSE Linux Enterprise Server for SAP Applications 15 SP3SUSE · SUSE Linux Enterprise Server for SAP Applications 15 SP4SUSE · SUSE Linux Enterprise Server for SAP Applications 15 SP5SUSE · SUSE Linux Enterprise Server for SAP Applications 15 SP6SUSE · SUSE Manager Server 4.3Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →