abrt-action-install-debuginfo in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to set world-writable permissions for arbitrary files and possibly gain privileges via a symlink attack on "the directories used to store information about crashes."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2013-03-12T22:00:00Z
Updated: 2024-08-06T21:14:16.355Z
Reserved: 2012-10-24T00:00:00Z
Link: CVE-2012-5660
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-03-12T23:55:01.610
Modified: 2024-11-21T01:45:04.230
Link: CVE-2012-5660
Redhat