Required CVE Record Information
Description
The mdcheck script of the mdadm package for openSUSE 13.2 prior to version 3.3.1-5.14.1 does not properly sanitize device names, which allows local attackers to execute arbitrary commands as root.
References 2 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- lists.opensuse.org: openSUSE-SU-2015:0308 vendor-advisoryx_transferred
- https://bugzilla.suse.com/show_bug.cgi?id=910500 x_transferred