CVE-2025-53882

EUVD-2025-22438
A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSE mailman3 package allows the mailman user to sent SIGHUP to arbitrary processes. This issue affects openSUSE Tumbleweed: from ? before 3.3.10-2.1.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.4 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 3.05%
Debian logo
Debian Releases
Debian Product
Codename
mailman3
bookworm
3.3.8-2~deb12u2
fixed
bullseye
3.3.3-1
fixed
forky
3.3.10-5
fixed
sid
3.3.10-5
fixed
trixie
3.3.10-2
fixed