Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2020-8025 Details

Description

A Incorrect Execution-Assigned Permissions vulnerability in the permissions package of SUSE Linux Enterprise Server 12-SP4, SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Server for SAP 15; openSUSE Leap 15.1, openSUSE Tumbleweed sets the permissions for some of the directories of the pcp package to unintended settings. This issue affects: SUSE Linux Enterprise Server 12-SP4 permissions versions prior to 20170707-3.24.1. SUSE Linux Enterprise Server 15-LTSS permissions versions prior to 20180125-3.27.1. SUSE Linux Enterprise Server for SAP 15 permissions versions prior to 20180125-3.27.1. openSUSE Leap 15.1 permissions versions prior to 20181116-lp151.4.24.1. openSUSE Tumbleweed permissions versions prior to 20200624.

Metrics

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

URLSource(s)Tag(s)
https://bugzilla.suse.com/show_bug.cgi?id=1171883 CVEExploitIssue TrackingVendor Advisory
https://bugzilla.suse.com/show_bug.cgi?id=1171883 [email protected]ExploitIssue TrackingVendor Advisory

Weakness Enumeration

CWE-IDCWE NameSource
CWE-279Incorrect Execution-Assigned Permissions[email protected]

Affected Products

ProductVersions
suse linux enterprise high performance computing
15

CPE

  • cpe:2.3:o:suse:linux_enterprise_high_performance_computing:15:*:*:*:espos:*:*:*
  • cpe:2.3:o:suse:linux_enterprise_high_performance_computing:15:*:*:*:ltss:*:*:*

Remediation

  • No remediation found in references.
suse linux enterprise server
15
15 sp1
15 sp2

CPE

  • cpe:2.3:o:suse:linux_enterprise_server:15:*:*:*:ltss:*:*:*
  • cpe:2.3:o:suse:linux_enterprise_server:15:sp1:*:*:*:*:*:*
  • cpe:2.3:o:suse:linux_enterprise_server:15:sp2:*:*:*:*:*:*

Remediation

  • No remediation found in references.
suse linux enterprise software development kit
12 sp4
12 sp5

CPE

  • cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:sp4:*:*:*:*:*:*
  • cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:sp5:*:*:*:*:*:*

Remediation

  • No remediation found in references.

Change History

5 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2020-8025
NVD Published Date:
Aug 7, 2020
NVD Last Modified:
Jun 17, 2026
Source:
[email protected]
CVE-2020-8025 Details - Not Deferred