Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The SUSE Audit Log Keeper daemon before 0.2.1-0.4.6.1 for SUSE Manager and Spacewalk uses world-readable permissions for /etc/auditlog-keeper.conf, which allows local users to obtain passwords by reading this file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AuditLogKeeper ‘auditlog-keeper.conf’ 不安全文件权限漏洞
Vulnerability Description
SUSE Manager和Spacewalk中的SUSE Audit Log Keeper守护进程0.2.1-0.4.6.1之前版本中存在漏洞,该漏洞源于/etc/auditlog-keeper.conf文件使用了“所有人可读权限”。本地攻击者可利用该漏洞读取这个文件而获取密码。
CVSS Information
N/A
Vulnerability Type
N/A