Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2024-49504

Disclosure Date: November 13, 2024 (last updated November 14, 2024)
grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.
0
Attacker Value
Unknown

CVE-2024-22034

Disclosure Date: October 16, 2024 (last updated October 17, 2024)
Attackers could put the special files in .osc into the actual package sources (e.g. _apiurl). This allows the attacker to change the configuration of osc for the victim
0
Attacker Value
Unknown

CVE-2024-22033

Disclosure Date: October 16, 2024 (last updated October 17, 2024)
The OBS service obs-service-download_url was vulnerable to a command injection vulnerability. The attacker could provide a configuration to the service that allowed to execute command in later steps
0
Attacker Value
Unknown

CVE-2024-22029

Disclosure Date: October 16, 2024 (last updated October 17, 2024)
Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
0
Attacker Value
Unknown

CVE-2023-32190

Disclosure Date: October 16, 2024 (last updated October 17, 2024)
mlocate's %post script allows RUN_UPDATEDB_AS user to make arbitrary files world readable by abusing insecure file operations that run with root privileges.
0