cobbler security update
/var/log/cobbler/ directory was owned by the web service
user. Access to this account could potentially be abused to
corrupt files during root filesystem operations by the
Cobbler daemon (CVE-2011-1551).
-
Submitted by
Adrian Schröter (adrianSuSE)
- Version 4280
Fixed bugs
bnc#678433
VUL-1: CVE-2011-1550: cobbler: logrotate: issues with service owned directories