A Improper Check for Dropped Privileges vulnerability in the logrotate setup of openSUSE Tumbleweed mailman3 allows the mailman user to create files as root, allowing for a potential privilege escalation. This issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1.
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-53882 |
Configurations
No configuration.
History
31 Jul 2025, 12:15
Type | Values Removed | Values Added |
---|---|---|
Summary | A Improper Check for Dropped Privileges vulnerability in the logrotate setup of openSUSE Tumbleweed mailman3 allows the mailman user to create files as root, allowing for a potential privilege escalation. This issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1. | |
CWE | CWE-273 |
24 Jul 2025, 07:15
Type | Values Removed | Values Added |
---|---|---|
Summary | A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3 package allows potential escalation from mailman to root. This issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1. |
23 Jul 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
CWE |
23 Jul 2025, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-23 10:15
Updated : 2025-07-31 12:15
NVD link : CVE-2025-53882
Mitre link : CVE-2025-53882
JSON object : View
Products Affected
No product.
CWE
CWE-273
Improper Check for Dropped Privileges