ZeroHour

CVE-2016-1602

CVSS 3.0
7.8 high
EPSS
<1%p43
Published
()
Modified
Description

A code injection in the supportconfig data collection tool in supportutils in SUSE Linux Enterprise Server 12 and 12-SP1 and SUSE Linux Enterprise Desktop 12 and 12-SP1 could be used by local attackers to execute code as the user running supportconfig (usually root).

Vendors
suse
Products
linux enterprise desktop, linux enterprise server, suse linux enterprise server
Weakness
CWE-94
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.