SUSE openSUSE Factory assigns ownership of the /var/log/cobbler/ directory tree to the web-service user account, which might allow local users to gain privileges by leveraging access to this account during root filesystem operations by the Cobbler daemon.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2011-03-30T22:00:00

Updated: 2024-08-06T22:28:41.932Z

Reserved: 2011-03-30T00:00:00

Link: CVE-2011-1551

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2011-03-30T22:55:02.800

Modified: 2017-08-17T01:34:15.697

Link: CVE-2011-1551

cve-icon Redhat

No data.