CVE-2014-0595
published 2014-05-08CVE-2014-0595: /opt/novell/ncl/bin/nwrights in Novell Client for Linux in Novell Open Enterprise Server (OES) 11 Linux SP2 does not properly manage a certain array, which…
PriorityP46low2.6CVSS 2.0
AVLACHAuNCPIPAN
EPSS
0.34%
26.6th percentile
/opt/novell/ncl/bin/nwrights in Novell Client for Linux in Novell Open Enterprise Server (OES) 11 Linux SP2 does not properly manage a certain array, which allows local users to obtain the S permission in opportunistic circumstances by leveraging the granting of the F permission by an administrator.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| novell | open_enterprise_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.opensuse.org/opensuse-security-announce/2014-06/msg00030.htmlhttp://www.novell.com/support/kb/doc.php?id=7014932http://www.securityfocus.com/bid/67144http://lists.opensuse.org/opensuse-security-announce/2014-06/msg00030.htmlhttp://www.novell.com/support/kb/doc.php?id=7014932http://www.securityfocus.com/bid/67144
2014-05-08
Published