Upstream information

CVE-2026-72694 at MITRE

Description

A flaw was found in MRTG. When the MRTG daemon is started as a root user and subsequently drops privileges, a local, low-privileged attacker can exploit a symbolic link (symlink) following vulnerability. By influencing or pre-placing a symlink in the process ID (PID) file path, the attacker can trick the root process into changing the ownership of an arbitrary existing file to the daemon user. This can lead to local privilege escalation, allowing unauthorized access to or modification of sensitive files.

SUSE information

Overall state of this security issue: Resolved

This issue is currently rated as having important severity.

CVSS v3 Scores
CVSS detail CNA (Red Hat)
Base Score 7.1
Vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact None
CVSSv3 Version 3.1
No SUSE Bugzilla entries cross referenced.

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Liberty Linux 10
  • mrtg >= 2.17.10-12.el10_2.1
  • mrtg-selinux >= 2.17.10-12.el10_2.1
Patchnames:
RHSA-2026:57596 (x86_64)
SUSE Liberty Linux 9
  • mrtg >= 2.17.7-12.el9_8.1
Patchnames:
RHSA-2026:57600 (x86_64)


SUSE Timeline for this CVE

CVE page created: Fri Aug 21 19:39:57 2026
CVE page last modified: Mon Aug 24 22:15:15 2026