CVE-2020-15396
Linux Debian vulnerability analysis and mitigation

Overview

CVE-2020-15396 affects HylaFAX+ through version 7.0.2 and HylaFAX Enterprise. The vulnerability was discovered in June 2020 and involves the faxsetup utility which calls chown on files in user-owned directories. This security flaw affects the core functionality of the fax server system (NVD).

Technical details

The vulnerability stems from a race condition in the faxsetup utility where it performs chown operations on files in user-owned directories. The issue is specifically located in the setupfax script where it executes chown and chmod operations on configuration files in directories that can be manipulated by the uucp user. The vulnerability has been assigned a CVSS v3.1 base score of 7.8 (HIGH) with the vector string CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H (NVD, SUSE Bug).

Impact

By exploiting this vulnerability, a local attacker could escalate their privileges to root through a race condition attack. This allows an attacker to manipulate file ownership and potentially gain unauthorized access to sensitive system files (NVD, Gentoo Security).

Exploitability

The vulnerability is locally exploitable and requires low attack complexity. A proof of concept exists demonstrating how an attacker with uucp user privileges can exploit the race condition to gain ownership of sensitive files like /etc/shadow. The attack is reported to be 100% stable on affected systems (SUSE Bug).

Mitigation and workarounds

The vulnerability was fixed in HylaFAX+ version 7.0.3. The fix includes secure temporary directory creation for faxsetup, faxaddmodem, and probemodem utilities. Users are advised to upgrade to version 7.0.3 or later. Various Linux distributions have released security updates to address this vulnerability (Gentoo Security, HylaFAX Patch).

Additional resources


SourceThis report was generated using AI

Related Linux Debian vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-71969HIGH8.4
  • Linux Debian logoLinux Debian
  • optee-os
NoNoAug 10, 2026
CVE-2026-71968HIGH8.4
  • Linux Debian logoLinux Debian
  • optee-os
NoNoAug 10, 2026
CVE-2026-72913HIGH7.3
  • Linux Debian logoLinux Debian
  • kitty
NoYesAug 10, 2026
CVE-2026-73030HIGH7.2
  • Linux Debian logoLinux Debian
  • unearth
NoNoAug 10, 2026
CVE-2026-71967MEDIUM5.7
  • Linux Debian logoLinux Debian
  • optee-os
NoNoAug 10, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management