CVE-2012-0421: Novell Suse Audit Log Keeper

Low severity, CVSS 2.1. EPSS: 0.3% chance of exploitation in the next 30 days.

The SUSE Audit Log Keeper daemon before 0.2.1-0.4.6.1 for SUSE Manager and Spacewalk uses world-readable permissions for /etc/auditlog-keeper.conf, which allows local users to obtain passwords by reading this file.

Affected products

  • Novell Suse Audit Log Keeper: up to and including 0.2.1

Published 2012-08-08. Last modified 2026-06-16.