SuSE: 2022:050 Minor: Shadow/Login Remote Privilege Elevation
This login implementation may cause wrong group IDs to be set in very rare cases. The harm of this bug is therefore considerably small on SuSE Linux.
Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Find the information you need for your favorite open source distribution .
This login implementation may cause wrong group IDs to be set in very rare cases. The harm of this bug is therefore considerably small on SuSE Linux.
Buffer overflow and privilege escalation vulnerabilities have been fixed. This advisory also lists other pending vulnerabilities in other SuSE packages.
The window manager Window Maker was found vulnerable to a buffer overflow due to improper bounds checking when setting the window title.
An adversary could insert MySQL commands along with a password and these commands will be interpreted by MySQL while mod_auth_mysql is doing the password lookup in the database. A positive authentication could be returned.
The telnet server which is shipped with SuSE distributions contains a remotely exploitable buffer-overflow within its telnet option negotiation code.