CVE-2016-5759

HIGH

mkdumprd - Local Privilege Escalation

Title source: llm

Description

The mkdumprd script called "dracut" in the current working directory "." allows local users to trick the administrator into executing code as root.

Scores

CVSS v3 7.8
EPSS 0.0003
EPSS Percentile 8.1%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-20
Status draft

Affected Products (3)

novell/suse_linux_enterprise_desktop
novell/suse_linux_enterprise_server
opensuse/leap

Timeline

Published Sep 08, 2017
Tracked Since Feb 18, 2026