CVE-2018-19638

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
05/03/2019
Last modified:
07/11/2023

Description

In supportutils, before version 3.1-5.7.1 and if pacemaker is installed on the system, an unprivileged user could have overwritten arbitrary files in the directory that is used by supportutils to collect the log files.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:opensuse:supportutils:*:*:*:*:*:*:*:* 3.1-5.7.1 (excluding)