A Insecure Temporary File vulnerability in grub-once of grub2 in SUSE Linux Enterprise Server 15 SP4, openSUSE Factory allows local attackers to truncate arbitrary files. This issue affects: SUSE Linux Enterprise Server 15 SP4 grub2 versions prior to 2.06-150400.7.1. SUSE openSUSE Factory grub2 versions prior to 2.06-18.1.
Creating and using insecure temporary files can leave application and system data vulnerable to attack.
Link | Tags |
---|---|
https://bugzilla.suse.com/show_bug.cgi?id=1190474 | vendor advisory issue tracking exploit |