CVE-2012-0427

yast2-add-on-creator in SUSE inst-source-utils 2008.11.26 before 2008.11.26-0.9.1 and 2012.9.13 before 2012.9.13-0.8.1 allows local users to gain privileges via a crafted (1) file name or (2) directory name.
Configurations

Configuration 1 (hide)

cpe:2.3:o:opensuse:opensuse:11.4:*:*:*:*:*:*:*

History

21 Nov 2024, 01:34

Type Values Removed Values Added
References () http://download.novell.com/Download?buildid=tGCXHQR48E4~ - () http://download.novell.com/Download?buildid=tGCXHQR48E4~ -
References () https://bugzilla.novell.com/show_bug.cgi?id=604730 - Exploit () https://bugzilla.novell.com/show_bug.cgi?id=604730 - Exploit
References () https://support.novell.com/security/cve/CVE-2012-0427.html - Vendor Advisory () https://support.novell.com/security/cve/CVE-2012-0427.html - Vendor Advisory

Information

Published : 2013-12-02 04:36

Updated : 2024-11-21 01:34


NVD link : CVE-2012-0427

Mitre link : CVE-2012-0427

CVE.ORG link : CVE-2012-0427


JSON object : View

Products Affected

opensuse

  • opensuse
CWE
CWE-264

Permissions, Privileges, and Access Controls