CVE-2025-53881: Opensuse Tumbleweed

Medium severity, CVSS 6.9. EPSS: 0.2% chance of exploitation in the next 30 days.

A UNIX Symbolic Link (Symlink) Following vulnerability in logrotate config in the exim package allowed privilege escalation from mail user/group to root.This issue affects Tumbleweed: from ? before 4.98.2-lp156.248.1.

Affected products

Published 2025-10-02. Last modified 2026-06-17.