Security update for trousers
This update for trousers fixes the following issues:
- CVE-2019-18898: Fixed a local symlink attack where a rogue tss user
could have gain ownership of arbitrary files in the system during
installation/update of the trousers package (bsc#1157651).
This update was imported from the SUSE:SLE-15-SP1:Update update project.
-
Submitted by
Matthias Gerstner (mgerstner)
Fixed bugs
bnc#1157651
VUL-0: CVE-2019-18898: trousers: Local privilege escalation from tss to root