User can overwrite arbitrary log files in support tar
CVE-2018-19638
2.2LOW
What is CVE-2018-19638?
In supportutils, before version 3.1-5.7.1 and if pacemaker is installed on the system, an unprivileged user could have overwritten arbitrary files in the directory that is used by supportutils to collect the log files.
Affected Version(s)
supportutils < 3.1-5.7.1