[Bug 1187671] New: CVE-2021-29133 information disclosure due to setuid binaries
http://bugzilla.opensuse.org/show_bug.cgi?id=1187671 Bug ID: 1187671 Summary: CVE-2021-29133 information disclosure due to setuid binaries Classification: openSUSE Product: openSUSE Distribution Version: Leap 15.3 Hardware: Other OS: Other Status: NEW Severity: Normal Priority: P5 - None Component: Network Assignee: screening-team-bugs@suse.de Reporter: rpm@fthiessen.de QA Contact: qa-bugs@suse.de Found By: --- Blocker: --- Lack of verification in haserl, before 0.9.36 allows local users to read the contents of any file on the filesystem. Upstream: https://gitlab.alpinelinux.org/alpine/aports/-/issues/12539 SLE 15 SPx and Leap 15.2 are vulnerable. -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1187671
http://bugzilla.opensuse.org/show_bug.cgi?id=1187671#c1
--- Comment #1 from OBSbugzilla Bot
http://bugzilla.opensuse.org/show_bug.cgi?id=1187671
Andreas Stieger
http://bugzilla.opensuse.org/show_bug.cgi?id=1187671
http://bugzilla.opensuse.org/show_bug.cgi?id=1187671#c2
Ferdinand Thiessen
participants (1)
-
bugzilla_noreply@suse.com