CVE-2012-5635 Information

Description

The GlusterFS functionality in Red Hat Storage Management Console 2.0 Native Client and Server 2.0 allows local users to overwrite arbitrary files via a symlink attack on multiple temporary files created by (1) tests/volume.rc (2) extras/hook-scripts/S30samba-stop.sh and possibly other vectors different vulnerabilities than CVE-2012-4417.

Reference

http://rhn.redhat.com/errata/RHSA-2013-0691.html https://bugzilla.redhat.com/show_bug.cgi?id=886364

Share on: