CVE-2013-3713: Opensuse
Medium severity, CVSS 4.4. EPSS: 0.4% chance of exploitation in the next 30 days.
The image creation configuration in aaa_base before 16.26.1 for openSUSE 13.1 KDE adds the root user to the "users" group when installing from a live image, which allows local users to obtain sensitive information and possibly have other unspecified impacts, as demonstrated by reading /etc/shadow.
Affected products
- Opensuse Opensuse: version 13.1 only
Published 2014-01-11. Last modified 2026-06-16.