Vulnerability in Novell Client for Linux Allows Privilege Escalation
CVE-2014-0595

Currently unrated

Key Information:

Vendor
Novell
Vendor
CVE Published:
8 May 2014

Summary

The Novell Client for Linux in Novell Open Enterprise Server (OES) 11 Linux SP2 contains a vulnerability due to improper management of an array in the /opt/novell/ncl/bin/nwrights component. This flaw enables local users to elevate their permissions to S by exploiting the F permission granted by an administrator under certain conditions. This vulnerability poses risks to system integrity and requires immediate attention.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.