CVE-2014-0595

low

Description

/opt/novell/ncl/bin/nwrights in Novell Client for Linux in Novell Open Enterprise Server (OES) 11 Linux SP2 does not properly manage a certain array, which allows local users to obtain the S permission in opportunistic circumstances by leveraging the granting of the F permission by an administrator.

References

http://www.securityfocus.com/bid/67144

http://www.novell.com/support/kb/doc.php?id=7014932

http://lists.opensuse.org/opensuse-security-announce/2014-06/msg00030.html

Details

Source: Mitre, NVD

Published: 2014-05-08

Updated: 2020-02-24

Risk Information

CVSS v2

Base Score: 2.6

Vector: CVSS2#AV:L/AC:H/Au:N/C:P/I:P/A:N

Severity: Low