All 6 CVE vulnerabilities found in openSUSE Tumbleweed, with AI-generated Chinese analysis, references, and POCs.
Vendor: SUSE
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-62875 | Local DoS in OpenSMTPD via UNIX domain socket smtpd.sock CWE-754 | 5.5 | - | 2025-11-20 |
| CVE-2025-53882 | The logrotate configuration in the python-mailman of openSUSE allows the mailman user to sent SIGHUP to arbitrary proceess CWE-807 | 4.4 | Medium | 2025-07-23 |
| CVE-2025-23394 | daily-backup.sh script in cyrus-imapd allows escalation from cyrus to root CWE-61 | 8.4AI | HighAI | 2025-05-26 |
| CVE-2025-23386 | gerbera: Privilege escalation from user gerbera to root because of insecure %post script CWE-276 | 7.8 | High | 2025-04-10 |
| CVE-2024-49504 | grub2 allows bypassing TPM-bound disk encryption on SL(E)M encrypted Images | 4.9AI | MediumAI | 2024-11-13 |
| CVE-2023-32190 | mlocate's %post script allows RUN_UPDATEDB_AS user to make arbitrary files world readable | 6.5 | - | 2024-10-16 |
All 6 known CVE vulnerabilities affecting openSUSE Tumbleweed with full Chinese analysis, references, and POCs where available.