VYPR
High severity7.8NVD Advisory· Published Oct 16, 2024· Updated Apr 15, 2026

CVE-2023-32190

CVE-2023-32190

Description

mlocate's %post script allows RUN_UPDATEDB_AS user to make arbitrary files world readable by abusing insecure file operations that run with root privileges.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.