The apt-cacher-ng package of openSUSE Leap 15.1 runs operations in user owned directory /run/apt-cacher-ng with root privileges. This can allow local attackers to influence the outcome of these operations. This issue affects: openSUSE Leap 15.1 apt-cacher-ng versions prior to 3.1-lp151.3.3.1.
2020-01-23T15:15:13.600
2024-11-21T04:33:48.320
Modified
CVSSv3.1: 6.2 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:P/A:N
3.9
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | apt-cacher-ng_project | apt-cacher-ng | < 3.1-lp151.3.3.1 | Yes |
Operating System | opensuse | leap | 15.1 | No |
Operating System | opensuse | backports | sle-15 | Yes |