Medium severity6.2NVD Advisory· Published Jan 23, 2020· Updated Jun 17, 2026
CVE-2019-18899
CVE-2019-18899
Description
The apt-cacher-ng package of openSUSE Leap 15.1 runs operations in user owned directory /run/apt-cacher-ng with root privileges. This can allow local attackers to influence the outcome of these operations. This issue affects: openSUSE Leap 15.1 apt-cacher-ng versions prior to 3.1-lp151.3.3.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:a:apt-cacher-ng_project:apt-cacher-ng:*:*:*:*:*:*:*:*Range: <3.1-lp151.3.3.1
- Range: <3.1-lp151.3.3.1
- osv-coords2 versionspkg:rpm/opensuse/apt-cacher-ng&distro=openSUSE%20Leap%2015.1pkg:rpm/suse/apt-cacher-ng&distro=SUSE%20Package%20Hub%2015%20SP1
< 3.1-lp151.3.3.1+ 1 more
- (no CPE)range: < 3.1-lp151.3.3.1
- (no CPE)range: < 3.1-bp151.4.3.1
Patches
Vulnerability mechanics
References
3- lists.opensuse.org/opensuse-security-announce/2020-01/msg00057.htmlnvdMailing ListVendor Advisory
- lists.opensuse.org/opensuse-security-announce/2020-01/msg00065.htmlnvdMailing ListVendor Advisory
- bugzilla.suse.com/show_bug.cginvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.