CVE-2012-5619 Information

Description

The Sleuth Kit (TSK) 4.0.1 does not properly handle .\ (dotfile) file system entries in FAT file systems and other file systems for which . is not a reserved name which allows local users to hide activities it more difficult to conduct forensics activities as demonstrated by Flame.

Reference

http://labs.bitdefender.com/2012/06/flame-the-story-of-leaked-data-carried-by-human-vector/ http://lists.fedoraproject.org/pipermail/package-announce/2013-January/097289.html http://lists.fedoraproject.org/pipermail/package-announce/2013-January/097293.html http://www.mandriva.com/security/advisories?name=MDVSA-2013:125 http://www.openwall.com/lists/oss-security/2012/12/01/2 http://www.openwall.com/lists/oss-security/2012/12/04/2 https://bugzilla.redhat.com/show_bug.cgi?id=883330

Share on: