NA

CVE-2022-31256

Published: 26/10/2022 Updated: 28/10/2022
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A Improper Link Resolution Before File Access ('Link Following') vulnerability in a script called by the sendmail systemd service of openSUSE Factory allows local malicious users to escalate from user mail to root. This issue affects: SUSE openSUSE Factory sendmail versions before 8.17.1-1.1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

opensuse factory