Oval Definition:oval:org.opensuse.security:def:202221944
Revision Date:2022-06-30Version:1
Title:CVE-2022-21944
Description:

A UNIX Symbolic Link (Symlink) Following vulnerability in the systemd service file for watchman of openSUSE Backports SLE-15-SP3, Factory allows local attackers to escalate to root. This issue affects: openSUSE Backports SLE-15-SP3 watchman versions prior to 4.9.0. openSUSE Factory watchman versions prior to 4.9.0-9.1.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2022-21944
SUSE CVE-2022-21944
openSUSE-SU-2022:0016-1
Platform(s):openSUSE Leap 15.3
openSUSE Tumbleweed
SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP3
SUSE Manager Proxy 4.2
SUSE Manager Server 4.2
SUSE Package Hub for SUSE Linux Enterprise 15 SP3
Product(s):
Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • python3-watchman-1.4.0-6.1 is installed
  • OR watchman-4.9.0-6.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.3 is installed
  • AND Package Information
  • python3-watchman-1.4.0-bp153.2.3.1 is installed
  • AND python3-watchman is signed with openSUSE key
  • OR
  • watchman-4.9.0-bp153.2.3.1 is installed
  • AND watchman is signed with openSUSE key
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 15 SP3 is installed
  • AND Package Information
  • python3-watchman-1.4.0-bp153.2.3.1 is installed
  • OR watchman-4.9.0-bp153.2.3.1 is installed
  • BACK