VYPR

aaa_base

by SUSE S.A.

CVEs (2)

  • CVE-2011-0461Apr 4, 2011
    risk 0.00cvss epss 0.00

    /etc/init.d/boot.localfs in the aaa_base package before 11.2-43.48.1 in SUSE openSUSE 11.2, and before 11.3-8.7.1 in openSUSE 11.3, allows local users to overwrite arbitrary files via a symlink attack on /dev/shm/mtab.

  • CVE-2000-0433May 2, 2000
    risk 0.00cvss epss 0.00

    The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles.