CVE-2024-22029
published 2024-10-16CVE-2024-22029: Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.18%
8.0th percentile
Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | tomcat10 | — | — |
| debian | tomcat9 | — | — |
| suse | container_suse_manager_5.0_x86_64_server_5.0.0-beta1.2.122 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | opensuse_leap_15.5 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | opensuse_tumbleweed | >= ? < 9.0.85-3.1 | 9.0.85-3.1 |
| suse | suse_enterprise_storage_7.1 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_high_performance_computing_15_sp2-ltss | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_high_performance_computing_15_sp3-ltss | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_high_performance_computing_15_sp4-espos | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_high_performance_computing_15_sp4-ltss | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_high_performance_computing_15_sp5 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_high_performance_computing_15_sp6 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_module_for_web_and_scripting_15_sp5 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_module_for_web_and_scripting_15_sp6 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_15_sp2-ltss | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_15_sp3-ltss | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_15_sp4-ltss | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_15_sp5 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_15_sp6 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_for_sap_applications_15_sp2 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_for_sap_applications_15_sp3 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_for_sap_applications_15_sp4 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_for_sap_applications_15_sp5 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_linux_enterprise_server_for_sap_applications_15_sp6 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
| suse | suse_manager_server_4.3 | >= ? < 9.0.85-150200.57.1 | 9.0.85-150200.57.1 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8LOW
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2024-22029: Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
osv·2024-10-16·CVSS 7.8
CVE-2024-22029 [HIGH] CVE-2024-22029: Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
GHSA
GHSA-w8vw-x82m-vg68: Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
ghsa_unreviewed·2024-10-16
CVE-2024-22029 [HIGH] CWE-732 GHSA-w8vw-x82m-vg68: Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
Red Hat
tomcat: Escalation to root from tomcat user via %post script
vendor_redhat·2024-02-14·CVSS 7.8
CVE-2024-22029 [HIGH] CWE-269 tomcat: Escalation to root from tomcat user via %post script
tomcat: Escalation to root from tomcat user via %post script
Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
A flaw was found in the Tomcat package of OpenSUSE and derived distributions. This issue occurs due to incorrect permissions and a race condition in the %post section of the Tomcat RPM package, resulting in local privilege escalation when the Tomcat package is re-installed.
Statement: This flaw is specific to OpenSUSE and derived distributions. Therefore, Red Hat products are not affected by this issue.
Package: tomcat (Red Hat Enterprise Linux 10) - Not affected
Package: tomcat6 (Red Hat Enterprise Linux 6) - Not affected
Package: tomcat (Red Hat Enterprise Linux 7) - Not affected
Package: pki-
Debian
CVE-2024-22029: tomcat10 - Insecure permissions in the packaging of tomcat allow local users that win a rac...
vendor_debian·2024·CVSS 7.8
CVE-2024-22029 [HIGH] CVE-2024-22029: tomcat10 - Insecure permissions in the packaging of tomcat allow local users that win a rac...
Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root
Scope: local
bookworm: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-10-16
Published