Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2024-22038

Disclosure Date: November 28, 2024 (last updated December 21, 2024)
Various problems in obs-scm-bridge allows attackers that create specially crafted git repositories to leak information of cause denial of service.
0
Attacker Value
Unknown

CVE-2022-45155

Disclosure Date: March 02, 2023 (last updated October 08, 2023)
An Improper Handling of Exceptional Conditions vulnerability in obs-service-go_modules of openSUSE Factory allows attackers that can influence the call to the service to delete files and directories on the system of the victim. This issue affects: SUSE openSUSE Factory obs-service-go_modules versions prior to 0.6.1.
Attacker Value
Unknown

CVE-2021-32000

Disclosure Date: July 08, 2021 (last updated November 28, 2024)
A UNIX Symbolic Link (Symlink) Following vulnerability in the clone-master-clean-up.sh script of clone-master-clean-up in SUSE Linux Enterprise Server 12 SP3, SUSE Linux Enterprise Server 15 SP1; openSUSE Factory allows local attackers to delete arbitrary files. This issue affects: SUSE Linux Enterprise Server 12 SP3 clone-master-clean-up version 1.6-4.6.1 and prior versions. SUSE Linux Enterprise Server 15 SP1 clone-master-clean-up version 1.6-3.9.1 and prior versions. openSUSE Factory clone-master-clean-up version 1.6-1.4 and prior versions.
Attacker Value
Unknown

CVE-2011-1551

Disclosure Date: March 30, 2011 (last updated October 04, 2023)
SUSE openSUSE Factory assigns ownership of the /var/log/cobbler/ directory tree to the web-service user account, which might allow local users to gain privileges by leveraging access to this account during root filesystem operations by the Cobbler daemon.
0