A Incorrect Permission Assignment for Critical Resource vulnerability in the sudoers configuration in cscreen of openSUSE Factory allows any local users to gain the privileges of the tty and dialout groups and access and manipulate any running cscreen seesion. This issue affects: openSUSE Factory cscreen version 1.2-1.3 and prior versions.
References
Link | Resource |
---|---|
https://bugzilla.suse.com/show_bug.cgi?id=1196451 | Exploit Issue Tracking Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: suse
Published: 2022-03-16T00:00:00
Updated: 2023-06-22T00:00:00
Reserved: 2021-12-16T00:00:00
Link: CVE-2022-21946
JSON object: View
NVD Information
Status : Modified
Published: 2022-03-16T10:15:08.340
Modified: 2023-06-22T09:15:10.693
Link: CVE-2022-21946
JSON object: View
Redhat Information
No data.
CWE