CVE-2018-19638

In supportutils, before version 3.1-5.7.1 and if pacemaker is installed on the system, an unprivileged user could have overwritten arbitrary files in the directory that is used by supportutils to collect the log files.
Configurations

Configuration 1 (hide)

cpe:2.3:a:opensuse:supportutils:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-03-05 16:29

Updated : 2024-02-04 20:03


NVD link : CVE-2018-19638

Mitre link : CVE-2018-19638

CVE.ORG link : CVE-2018-19638


JSON object : View

Products Affected

opensuse

  • supportutils
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')

CWE-377

Insecure Temporary File