NA

CVE-2022-31253

Published: 09/11/2022 Updated: 10/11/2022
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A Untrusted Search Path vulnerability in openldap2 of openSUSE Factory allows local attackers with control of the ldap user or group to change ownership of arbitrary directory entries to this user/group, leading to escalation to root. This issue affects: openSUSE Factory openldap2 versions before 2.6.3-404.1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

opensuse openldap2