VYPR
Unrated severityNVD Advisory· Published Mar 30, 2011· Updated Apr 29, 2026

CVE-2011-1548

CVE-2011-1548

Description

The default configuration of logrotate on Debian GNU/Linux uses root privileges to process files in directories that permit non-root write access, which allows local users to conduct symlink and hard link attacks by leveraging logrotate's lack of support for untrusted directories, as demonstrated by /var/log/postgresql/.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

36

News mentions

0

No linked articles in our index yet.