CNNVD-202507-3001 Information

CNNVD ID

CNNVD-202507-3001

CVE-2025-53882

  • CNNVD Published: 2025-07-23

Description (Chinese)

openSUSE Tumbleweed是德国openSUSE公司的一个桌面和服务器操作系统。 openSUSE Tumbleweed 3.3.10-2.1之前版本存在安全漏洞,该漏洞源于logrotate配置依赖不可信输入,可能导致权限提升。

Description (English)

OpenSUSE Tumbleweed is a desktop and server operating system of the German company OpenSUE. OpenSUSE Tumbleweed 3.3.10-2.1 has a security loophole, which stems from logrotate configuration relying on untrustworthy inputs, which may lead to an increase in privileges.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

openSUSE

Published

2025-07-23

Last Modified

2026-02-24

References

https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-53882 https://nvd.nist.gov/vuln/detail/CVE-2025-53882

Patch

https://get.opensuse.org/zh_CN/tumbleweed/#download

Share on: