A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3 package allows potential escalation from mailman to root. This issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-53882 |
![]() ![]() |
History
Thu, 24 Jul 2025 07:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3 package allows potential escalation from mailman to rootThis issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1. | A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3 package allows potential escalation from mailman to root. This issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1. |
Wed, 23 Jul 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Wed, 23 Jul 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Suse
Suse opensuse Tumbleweed |
|
Vendors & Products |
Suse
Suse opensuse Tumbleweed |
Wed, 23 Jul 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3 package allows potential escalation from mailman to rootThis issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1. | |
Title | python-mailmans logrotate configuration allows potential escalation from mailman to root | |
Weaknesses | CWE-807 | |
References |
|

Status: PUBLISHED
Assigner: suse
Published: 2025-07-23T09:31:18.547Z
Updated: 2025-07-29T03:55:19.262Z
Reserved: 2025-07-11T10:53:52.681Z
Link: CVE-2025-53882

Updated: 2025-07-23T18:31:45.853Z

Status : Awaiting Analysis
Published: 2025-07-23T10:15:24.650
Modified: 2025-07-25T15:29:44.523
Link: CVE-2025-53882

No data.