A UNIX Symbolic Link (Symlink) Following vulnerability in openSUSE Tumbleweed cyrus-imapd allows escalation from cyrus to root.This issue affects openSUSE Tumbleweed cyrus-imapd before 3.8.4-2.1.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-23394 |
|
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 27 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 26 May 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A UNIX Symbolic Link (Symlink) Following vulnerability in openSUSE Tumbleweed cyrus-imapd allows escalation from cyrus to root.This issue affects openSUSE Tumbleweed cyrus-imapd before 3.8.4-2.1. | |
| Title | daily-backup.sh script in cyrus-imapd allows escalation from cyrus to root | |
| Weaknesses | CWE-61 | |
| References |
|
Status: PUBLISHED
Assigner: suse
Published: 2025-05-26T15:34:32.562Z
Updated: 2025-05-27T14:05:20.489Z
Reserved: 2025-01-15T12:39:03.324Z
Link: CVE-2025-23394
Updated: 2025-05-27T14:04:54.135Z
Status : Awaiting Analysis
Published: 2025-05-26T16:15:20.240
Modified: 2025-05-28T15:01:30.720
Link: CVE-2025-23394
No data.