Security Advisory

CVE-2019-3694

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-01-24 10:50:11
Last updated 2024-09-17 00:26:07
Assigner suse
CVSS score 7.7
State PUBLISHED

Description

A Symbolic Link (Symlink) Following vulnerability in the packaging of munin in openSUSE Factory, Leap 15.1 allows local attackers to escalate from user munin to root. This issue affects: openSUSE Factory munin version 2.0.49-4.2 and prior versions. openSUSE Leap 15.1 munin version 2.0.40-lp151.1.1 and prior versions.