CVE-2024-22037
28.11.2024, 10:15
The uyuni-server-attestation systemd service needs a database_password environment variable. This file has 640 permission, and cannot be shown users, but the environment is still exposed by systemd to non-privileged users.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.