The Crowbar Ohai plugin (chef/cookbooks/ohai/files/default/plugins/crowbar.rb) in the Deployer Barclamp in Crowbar, possibly 1.4 and earlier, allows local users to execute arbitrary shell commands via vectors related to "insecure handling of tmp files" and predictable file names.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2012-09-05T23:00:00
Updated: 2024-08-06T20:13:50.120Z
Reserved: 2012-06-14T00:00:00
Link: CVE-2012-3537
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-09-05T23:55:02.380
Modified: 2017-08-29T01:31:57.570
Link: CVE-2012-3537
Redhat
No data.