A UNIX Symbolic Link (Symlink) Following vulnerability in...
High severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Jul 28, 2021
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Jan 27, 2023
A UNIX Symbolic Link (Symlink) Following vulnerability in the clone-master-clean-up.sh script of clone-master-clean-up in SUSE Linux Enterprise Server 12 SP3, SUSE Linux Enterprise Server 15 SP1; openSUSE Factory allows local attackers to delete arbitrary files.
This issue affects:
SUSE Linux Enterprise Server 12 SP3
clone-master-clean-up version 1.6-4.6.1 and prior versions.
SUSE Linux Enterprise Server 15 SP1
clone-master-clean-up version 1.6-3.9.1 and prior versions.
openSUSE Factory
clone-master-clean-up version 1.6-1.4 and prior versions.
References