The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a /var/tmp/##### temporary file.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:44
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00024.html - | |
References | () http://www.securityfocus.com/bid/56656 - | |
References | () https://bugzilla.novell.com/show_bug.cgi?id=782967 - | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=875842 - |
Information
Published : 2012-11-29 13:14
Updated : 2024-11-21 01:44
NVD link : CVE-2012-5530
Mitre link : CVE-2012-5530
CVE.ORG link : CVE-2012-5530
JSON object : View
Products Affected
sgi
- performance_co-pilot
CWE
CWE-264
Permissions, Privileges, and Access Controls