CVE-2024-54159 Information

Description

stalld through 1.19.7 allows local users to cause a denial of service (file overwrite) via a /tmp/rtthrottle symlink attack.

Reference

https://cwe.mitre.org/data/definitions/61.html https://security.opensuse.org/2024/11/29/stalld-fixed-tmp-file.html https://www.openwall.com/lists/oss-security/2024/11/29/3

Share on: