suse linux-enterprise-server CVE-2019-18897 in Suse and OpenSuse Products
Published on March 2, 2020

Local privilege escalation from user salt to root

product logo product logo
A UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of salt of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Factory allows local attackers to escalate privileges from user salt to root. This issue affects: SUSE Linux Enterprise Server 12 salt-master version 2019.2.0-46.83.1 and prior versions. SUSE Linux Enterprise Server 15 salt-master version 2019.2.0-6.21.1 and prior versions. openSUSE Factory salt-master version 2019.2.2-3.1 and prior versions.

Vendor Advisory NVD

Vulnerability Analysis

CVE-2019-18897 can be exploited with local system access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be very high.

Attack Vector:
LOCAL
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
HIGH
Availability Impact:
HIGH

Weakness Type

What is an insecure temporary file Vulnerability?

The software attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.

CVE-2019-18897 has been classified to as an insecure temporary file vulnerability or weakness.


Products Associated with CVE-2019-18897

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2019-18897 are published in these products:

 
 
 

Affected Versions

SUSE Linux Enterprise Server 12: SUSE Linux Enterprise Server 15: openSUSE Factory:

Exploit Probability

EPSS
0.10%
Percentile
26.39%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.