7.8
CVSSv3

CVE-2021-25314

Published: 14/04/2021 Updated: 14/04/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A Creation of Temporary File With Insecure Permissions vulnerability in hawk2 of SUSE Linux Enterprise High Availability 12-SP3, SUSE Linux Enterprise High Availability 12-SP5, SUSE Linux Enterprise High Availability 15-SP2 allows local malicious users to escalate to root. This issue affects: SUSE Linux Enterprise High Availability 12-SP3 hawk2 versions before 2.6.3+git.1614685906.812c31e9. SUSE Linux Enterprise High Availability 12-SP5 hawk2 versions before 2.6.3+git.1614685906.812c31e9. SUSE Linux Enterprise High Availability 15-SP2 hawk2 versions before 2.6.3+git.1614684118.af555ad9.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

suse hawk2