CVE-2012-3329

IBM Advanced Settings Utility (ASU) through 3.62 and 3.70 through 9.21 and Bootable Media Creator (BoMC) through 2.30 and 3.00 through 9.21 on Linux allow local users to overwrite arbitrary files via a symlink attack on a (1) temporary file or (2) log file.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:advanced_settings_utility:3.62:*:*:*:*:*:*:*
cpe:2.3:a:ibm:advanced_settings_utility:3.70:*:*:*:*:*:*:*
cpe:2.3:a:ibm:advanced_settings_utility:9.21:*:*:*:*:*:*:*
cpe:2.3:a:ibm:bootable_media_creator:2.30:*:*:*:*:*:*:*
cpe:2.3:a:ibm:bootable_media_creator:3.00:*:*:*:*:*:*:*
cpe:2.3:a:ibm:bootable_media_creator:9.21:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:40

Type Values Removed Values Added
References () http://www.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5092090 - Vendor Advisory () http://www.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5092090 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/78044 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/78044 -

Information

Published : 2012-12-19 11:55

Updated : 2024-11-21 01:40


NVD link : CVE-2012-3329

Mitre link : CVE-2012-3329

CVE.ORG link : CVE-2012-3329


JSON object : View

Products Affected

ibm

  • advanced_settings_utility
  • bootable_media_creator

linux

  • linux_kernel
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')