A Incorrect Execution-Assigned Permissions vulnerability in the permissions package of SUSE Linux Enterprise Server 12-SP4, SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Server for SAP 15; openSUSE Leap 15.1, openSUSE Tumbleweed sets the permissions for some of the directories of the pcp package to unintended settings. This issue affects: SUSE Linux Enterprise Server 12-SP4 permissions versions prior to 20170707-3.24.1. SUSE Linux Enterprise Server 15-LTSS permissions versions prior to 20180125-3.27.1. SUSE Linux Enterprise Server for SAP 15 permissions versions prior to 20180125-3.27.1. openSUSE Leap 15.1 permissions versions prior to 20181116-lp151.4.24.1. openSUSE Tumbleweed permissions versions prior to 20200624.
While it is executing, the product sets the permissions of an object in a way that violates the intended permissions that have been specified by the user.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Linux_enterprise_high_performance_computing | Suse | 15 (including) | 15 (including) |
Linux_enterprise_server | Suse | 15 (including) | 15 (including) |
Linux_enterprise_server | Suse | 15-sp1 (including) | 15-sp1 (including) |
Linux_enterprise_server | Suse | 15-sp2 (including) | 15-sp2 (including) |
Linux_enterprise_software_development_kit | Suse | 12-sp4 (including) | 12-sp4 (including) |
Linux_enterprise_software_development_kit | Suse | 12-sp5 (including) | 12-sp5 (including) |
Pcp | Ubuntu | trusty | * |