Local privilege escalation from user privoxy to root
CVE-2019-3699
7.7HIGH
What is CVE-2019-3699?
UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of privoxy on openSUSE Leap 15.1, Factory allows local attackers to escalate from user privoxy to root. This issue affects: openSUSE Leap 15.1 privoxy version 3.0.28-lp151.1.1 and prior versions. openSUSE Factory privoxy version 3.0.28-2.1 and prior versions.
Affected Version(s)
Factory privoxy <= 3.0.28-2.1
Leap 15.1 privoxy <= 3.0.28-lp151.1.1