CVE-2018-17956: Opensuse YAST2-Samba-Provision

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

In yast2-samba-provision up to and including version 1.0.1 the password for samba shares was provided on the command line to tools used by yast2-samba-provision, allowing local attackers to read them in the process list

Affected products

  • Opensuse YAST2-Samba-Provision: up to and including 1.0.1

Published 2019-03-15. Last modified 2026-06-17.