PT-2020-10008 · Opensuse+1 · Opensuse Leap+1

Matthias Gerstner

·

Published

2020-01-23

·

Updated

2022-11-08

·

CVE-2019-18899

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions openSUSE Leap 15.1 apt-cacher-ng versions prior to 3.1-lp151.3.3.1
Description The issue allows local attackers to influence the outcome of operations run by the apt-cacher-ng package in the user-owned directory /run/apt-cacher-ng with root privileges.
Recommendations For openSUSE Leap 15.1 apt-cacher-ng versions prior to 3.1-lp151.3.3.1, update to version 3.1-lp151.3.3.1 or later to resolve the issue.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2019-18899
OPENSUSE-SU-2020:0124-1
OPENSUSE-SU-2020:0146-1
OPENSUSE-SU-2020_0124-1

Affected Products

Suse
Opensuse Leap