CVE 4.4 MEDIUM

python-mailman logrotate configuration allows potential escalation from mailman to root_CVE-2025-53882

4.4 / 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

Description

A Improper Check for Dropped Privileges vulnerability in the logrotate setup of openSUSE Tumbleweed mailman3 allows the mailman user to create files as root, allowing for a potential privilege escalation.Β This issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1.

Basic Information

ID CVE-2025-53882
Source suse
Published Jul 23, 2025 at 09:31
Modified Jul 31, 2025 at 11:29

Affected Product

Vendor SUSE
Product openSUSE Tumbleweed
Version ?
Affected Versions SUSE openSUSE Tumbleweed ?

CWE Classification

References

πŸ’­ Join the Security Discussion

πŸ”’ Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.