Vulnerability CVE-2023-32190


Published: 2024-10-16

Description:
mlocate's %post script allows RUN_UPDATEDB_AS user to make arbitrary files world readable by abusing insecure file operations that run with root privileges.

 References:
https://bugzilla.suse.com/show_bug.cgi?id=CVE-2023-32190

Copyright 2026, cxsecurity.com

 

Back to Top