VYPR

rpm package

opensuse/amazon-ssm-agent&distro=openSUSE Leap 15.3

pkg:rpm/opensuse/amazon-ssm-agent&distro=openSUSE%20Leap%2015.3

Vulnerabilities (1)

  • CVE-2022-29527Apr 20, 2022
    affected < 3.1.1260.0-150000.5.9.2fixed 3.1.1260.0-150000.5.9.2

    Amazon AWS amazon-ssm-agent before 3.1.1208.0 creates a world-writable sudoers file, which allows local attackers to inject Sudo rules and escalate privileges to root. This occurs in certain situations involving a race condition.