CVE-2024-22037: Suse Manager Server 5.0
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
The uyuni-server-attestation systemd service needs a database_password environment variable. This file has 640 permission, and cannot be shown users, but the environment is still exposed by systemd to non-privileged users.
Affected products
- Suse Suse Manager Server 5.0
Published 2024-11-28. Last modified 2026-06-17.