Description
A Improper Access Control vulnerability in the systemd service of cana in openSUSE Backports SLE-15-SP3, openSUSE Backports SLE-15-SP4 allows local users to hijack the UNIX domain socket This issue affects: openSUSE Backports SLE-15-SP3 canna versions prior to canna-3.7p3-bp153.2.3.1. openSUSE Backports SLE-15-SP4 canna versions prior to 3.7p3-bp154.3.3.1. openSUSE Factory was also affected. Instead of fixing the package it was deleted there.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-27106 | A Improper Access Control vulnerability in the systemd service of cana in openSUSE Backports SLE-15-SP3, openSUSE Backports SLE-15-SP4 allows local users to hijack the UNIX domain socket This issue affects: openSUSE Backports SLE-15-SP3 canna versions prior to canna-3.7p3-bp153.2.3.1. openSUSE Backports SLE-15-SP4 canna versions prior to 3.7p3-bp154.3.3.1. openSUSE Factory was also affected. Instead of fixing the package it was deleted there. |
References
| Link | Providers |
|---|---|
| https://bugzilla.suse.com/show_bug.cgi?id=1199280 |
|
History
No history.
Status: PUBLISHED
Assigner: suse
Published:
Updated: 2024-09-17T02:32:53.607Z
Reserved: 2021-12-16T00:00:00.000Z
Link: CVE-2022-21950
No data.
Status : Modified
Published: 2022-09-07T09:15:08.670
Modified: 2024-11-21T06:45:46.067
Link: CVE-2022-21950
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD