CVE-2012-2103 Information

Description

The qmailscan plugin for Munin 1.4.5 allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names.

Reference

http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=668778 http://secunia.com/advisories/48859 http://secunia.com/advisories/51218 http://www.openwall.com/lists/oss-security/2012/04/16/5 http://www.openwall.com/lists/oss-security/2012/04/16/6 http://www.securityfocus.com/bid/53031 http://www.ubuntu.com/usn/USN-1622-1 https://bugzilla.redhat.com/show_bug.cgi?id=812889 https://exchange.xforce.ibmcloud.com/vulnerabilities/74884

Share on: