CVE-2026-59681 | SUSE yast2-auth-client up to 5.0.4 Active Directory Configuration src/lib/auth/authconf.rb Auth::AuthConf ou/dnshostname/username/domain os command injection

SecurityVulns

A vulnerability identified as very critical has been detected in SUSE yast2-auth-client up to 5.0.4. Impacted is the function Auth::AuthConf of the file src/lib/auth/authconf.rb of the component Active Directory Configuration. This manipulation of the argument ou/dnshostname/username/domain causes os command injection.

This vulnerability is tracked as CVE-2026-59681. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More