CVE-2013-7042

SUSE Lifecycle Management Server < 1.3.7 - Privilege Escalation via World-Readable Secret Keys

Title source: llm
STIX 2.1

Description

SUSE Lifecycle Management Server (SLMS) before 1.3.7 uses world-readable permissions for the secret keys, which allows local users to gain privileges via unspecified vectors.

References (4)

Core 4
Core References
Issue Tracking x_refsource_confirm
https://bugzilla.novell.com/show_bug.cgi?id=852101
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/89897
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/100652

Scores

EPSS 0.0012
EPSS Percentile 30.3%

Details

CWE
CWE-264
Status published
Products (4)
novell/suse_lifecycle_management_server 1.0
novell/suse_lifecycle_management_server 1.1
novell/suse_lifecycle_management_server 1.2
novell/suse_lifecycle_management_server < 1.3
Published Dec 10, 2013
Tracked Since Feb 18, 2026