Code injection in openSUSE when running some source services used in the open build service 2.1 before March 11 2011.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HSUSE Opensuse
OSSuseall versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References
Related vulnerabilities
CVE-2017-3224HIGH8.2same product
Open Shortest Path First (OSPF) protocol implementations may improperly determine Link State Advertisement (LS...
CVE-2010-0230HIGH7.5same product
SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to listen on all network interfa...
CVE-2007-2654MEDIUM4.4same product
xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to r...
CVE-2008-3067LOW2.1same product
sudo w SUSE openSUSE 10.3 nie czyści bufora stdin po upływie limitu czasu przy wpisywaniu hasła, co może umożl...
CVE-2025-32463CRITICAL9.3⚠ KEVPL ✓same vendor
Sudo: eskalacja uprawnień do root poprzez opcję --chroot (CVE-2025-32463)