PT-2012-5456 · Intel+2 · Ibacm+2

Florian Weimer

·

Published

2012-10-22

·

Updated

2023-02-13

·

CVE-2012-4518

CVSS v2.0

3.6

Low

VectorAV:L/AC:L/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions ibacm version 1.0.7
Description The issue allows local users to overwrite the ib acm daemon log or ibacm.port file due to world-writable permissions set by ibacm 1.0.7.
Recommendations For ibacm version 1.0.7, consider changing the file permissions to prevent world-writable access until a patch is available. Restrict access to the ib acm daemon log and ibacm.port file to minimize the risk of exploitation.

Fix

Weakness Enumeration

Related Identifiers

CESA-2013_0509
CVE-2012-4518
RHSA-2013:0509
RHSA-2013_0509

Affected Products

Centos
Red Hat
Ibacm