Supportutils, before version 3.1-5.7.1, wrote data to static file /tmp/supp_log, allowing local attackers to overwrite files on systems without symlink protection
2019-03-05T16:29:00.323
2024-11-21T03:58:19.813
Modified
CVSSv3.0: 2.8 (LOW)
AV:L/AC:L/Au:N/C:N/I:P/A:P
3.9
4.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | opensuse | supportutils | < 3.1-5.7.1 | Yes |