VDB

CVE-2021-32000

CVE-2021-32000 PUBLISHED CVSS 3.200000047683716 LOW

A UNIX Symbolic Link (Symlink) Following vulnerability in the clone-master-clean-up.sh script of clone-master-clean-up in SUSE Linux Enterprise Server 12 SP3, SUSE Linux Enterprise Server 15 SP1; openSUSE Factory allows local attackers to delete arbitrary files. This issue affects: SUSE Linux Enterprise Server 12 SP3 clone-master-clean-up version 1.6-4.6.1 and prior versions. SUSE Linux Enterprise Server 15 SP1 clone-master-clean-up version 1.6-3.9.1 and prior versions. openSUSE Factory clone-master-clean-up version 1.6-1.4 and prior versions.

EPSS 0.30% · 21.8th percentile

Risk Scores

CVSS 3.1
3.200000047683716
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
EPSS Score
0.30%
21.8th percentile

Affected Products

VendorProductVersions
openSUSEFactoryclone-master-clean-up
suselinux_enterprise_server12, 15
suseopensuse_factory
SUSESUSE Linux Enterprise Server 12 SP3*
SUSESUSE Linux Enterprise Server 15 SP1clone-master-clean-up

Timeline

  • Jul 28, 2021 CVE Published
  • Jul 29, 2021 EPSS Score
  • Sep 26, 2021 EPSS Score
  • Nov 25, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Jan 23, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 21, 2022 EPSS Score
  • Jul 21, 2022 EPSS Score
  • Sep 18, 2022 EPSS Score
  • Nov 16, 2022 EPSS Score
  • Jan 14, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›