CVE-2012-5477 Information

Description

The smart proxy in Foreman before 1.1 uses a umask set to 0 which allows local users to modify files created by the daemon via unspecified vectors.

Reference

http://projects.theforeman.org/issues/1929 http://theforeman.org/security.html

Share on: