Medium severityNVD Advisory· Published Oct 2, 2025· Updated Apr 15, 2026
CVE-2025-53881
CVE-2025-53881
Description
A UNIX Symbolic Link (Symlink) Following vulnerability in logrotate config in the exim package allowed privilege escalation from mail user/group to root.This issue affects Tumbleweed: from ? before 4.98.2-lp156.248.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: >= ? < 4.98.2-lp156.248.1
- osv-coords2 versionspkg:rpm/opensuse/exim&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/exim&distro=openSUSE%20Tumbleweed
< 4.98.2-bp160.2.1+ 1 more
- (no CPE)range: < 4.98.2-bp160.2.1
- (no CPE)range: < 4.98.2-4.1
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.