Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27710 | A UNIX Symbolic Link (Symlink) Following vulnerability in openSUSE Tumbleweed cyrus-imapd allows escalation from cyrus to root.This issue affects openSUSE Tumbleweed cyrus-imapd before 3.8.4-2.1. |
| Link | Providers |
|---|---|
| https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-23394 |
|
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 27 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 26 May 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A UNIX Symbolic Link (Symlink) Following vulnerability in openSUSE Tumbleweed cyrus-imapd allows escalation from cyrus to root.This issue affects openSUSE Tumbleweed cyrus-imapd before 3.8.4-2.1. | |
| Title | daily-backup.sh script in cyrus-imapd allows escalation from cyrus to root | |
| Weaknesses | CWE-61 | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: suse
Published:
Updated: 2025-05-27T14:05:20.489Z
Reserved: 2025-01-15T12:39:03.324Z
Link: CVE-2025-23394
Updated: 2025-05-27T14:04:54.135Z
Status : Deferred
Published: 2025-05-26T16:15:20.240
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-23394
No data.
OpenCVE Enrichment
No data.
EUVD