NVD

Id
8480  
Name
CVE-2011-1550  
Description
The default configuration of logrotate on SUSE openSUSE Factory uses root privileges to process files in directories that permit non-root write access, which allows local users to conduct symlink and hard link attacks by leveraging logrotate"s lack of support for untrusted directories, as demonstrated by directories for the (1) cobbler, (2) inn, (3) safte-monitor, and (4) uucp packages.  
Reject
 
CVSS Version
2  
CVSS Score
6.3  
Severity
Medium  
CVSS Base Score
6.3  
CVSS Impact Subscore
9.2  
CVSS Exploit Subscore
3.4  
CVSS Vector
(AV:L/AC:M/Au:N/C:N/I:C/A:C)  
Pub Date
2017-01-07  
Published
2011-03-30  
Modified Date
2011-04-07  
Seq
2011-1550  

Actions