CVE-2025-32915 Details
Description
Packages downloaded by Checkmk's automatic agent updates on Linux and Solaris have incorrect permissions in Checkmk < 2.4.0p1, < 2.3.0p32, < 2.2.0p42 and <= 2.1.0p49 (EOL). This allows a local attacker to read sensitive data.
A vulnerability exists in Checkmk's automatic agent updates on Linux and Solaris platforms, affecting versions prior to 2.4.0p1, 2.3.0p32, 2.2.0p42, and 2.1.0p49 (EOL). The issue arises from packages being downloaded with overly permissive rights, which could allow a local attacker to access sensitive data. This vulnerability impacts users who have enabled 'Automatic Agent Updates' for Linux and Solaris hosts.
Users can update to Checkmk versions 2.4.0p1, 2.3.0p32, 2.2.0p42, or a future release of 2.5.0b1. If an update is not feasible, consider disabling 'Automatic Agent Updates' on affected hosts.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed May 22, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://checkmk.com/werk/17099 | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-732 | Incorrect Permission Assignment for Critical Resource | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| checkmk checkmk | 2.1.0 - 2.1.0 b1 2.1.0 b2 2.1.0 b3 2.1.0 b4 2.1.0 b5 2.1.0 b6 2.1.0 b7 2.1.0 b8 2.1.0 b9 2.1.0 p1 2.1.0 p10 2.1.0 p11 2.1.0 p12 2.1.0 p13 2.1.0 p14 2.1.0 p15 2.1.0 p16 2.1.0 p17 2.1.0 p18 2.1.0 p19 2.1.0 p2 2.1.0 p20 2.1.0 p21 2.1.0 p22 2.1.0 p23 2.1.0 p24 2.1.0 p25 2.1.0 p26 2.1.0 p27 2.1.0 p28 2.1.0 p29 2.1.0 p3 2.1.0 p30 2.1.0 p31 2.1.0 p32 2.1.0 p33 2.1.0 p34 2.1.0 p35 2.1.0 p36 2.1.0 p37 2.1.0 p38 2.1.0 p39 2.1.0 p4 2.1.0 p40 2.1.0 p41 2.1.0 p42 2.1.0 p43 2.1.0 p44 2.1.0 p45 2.1.0 p46 2.1.0 p47 2.1.0 p48 2.1.0 p49 2.1.0 p5 2.1.0 p6 2.1.0 p7 2.1.0 p8 2.1.0 p9 2.2.0 - 2.2.0 b1 2.2.0 b2 2.2.0 b3 2.2.0 b4 2.2.0 b5 2.2.0 b6 2.2.0 b7 2.2.0 b8 2.2.0 i1 2.2.0 p1 2.2.0 p10 2.2.0 p11 2.2.0 p12 2.2.0 p13 2.2.0 p14 2.2.0 p15 2.2.0 p16 2.2.0 p17 2.2.0 p18 2.2.0 p19 2.2.0 p2 2.2.0 p20 2.2.0 p21 2.2.0 p22 2.2.0 p23 2.2.0 p24 2.2.0 p25 2.2.0 p26 2.2.0 p27 2.2.0 p28 2.2.0 p29 2.2.0 p3 2.2.0 p30 2.2.0 p31 2.2.0 p32 2.2.0 p33 2.2.0 p34 2.2.0 p35 2.2.0 p36 2.2.0 p37 2.2.0 p38 2.2.0 p39 2.2.0 p4 2.2.0 p40 2.2.0 p41 2.2.0 p5 2.2.0 p6 2.2.0 p7 2.2.0 p8 2.2.0 p9 2.3.0 - 2.3.0 b1 2.3.0 b2 2.3.0 b3 2.3.0 b4 2.3.0 b5 2.3.0 b6 2.3.0 p1 2.3.0 p10 2.3.0 p11 2.3.0 p12 2.3.0 p13 2.3.0 p14 2.3.0 p15 2.3.0 p16 2.3.0 p17 2.3.0 p18 2.3.0 p19 2.3.0 p2 2.3.0 p20 2.3.0 p21 2.3.0 p22 2.3.0 p23 2.3.0 p24 2.3.0 p25 2.3.0 p26 2.3.0 p27 2.3.0 p28 2.3.0 p29 2.3.0 p3 2.3.0 p30 2.3.0 p31 2.3.0 p4 2.3.0 p5 2.3.0 p6 2.3.0 p7 2.3.0 p8 2.3.0 p9 2.4.0 - 2.4.0 b1 2.4.0 b2 2.4.0 b3 2.4.0 b4 2.4.0 b5 2.4.0 b6 |
CPE
Remediation
| |
| linux linux kernel | All versions |
CPE
Remediation
| |
| oracle solaris | All versions |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Aug 26, 2025 | Reanalysis | [email protected] |
| Aug 22, 2025 | Initial Analysis | [email protected] |
| May 22, 2025 | New CVE Received | [email protected] |