MEDIUM
The image creation configuration in aaa_base before 16.26.1 for openSUSE 13.1 KDE adds the root user to the "users" group when installing from a live image, which allows local users to obtain sensitive information and possibly have other unspecified impacts, as demonstrated by reading /etc/shadow
Published Jan 11, 2014
4.4
MEDIUMCVSS 2.0
EPSS 0.36%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.