The server in Crowbar, as used in SUSE Cloud 1.0, uses weak permissions for the production.log file, which has unspecified impact and attack vectors.
References
Link | Resource |
---|---|
https://bugzilla.novell.com/show_bug.cgi?id=784857 | |
https://support.novell.com/security/cve/CVE-2012-0434.html | Vendor Advisory |
https://www.suse.com/support/update/announcement/2013/suse-ru-20130020-1.html | Vendor Advisory |
Configurations
Information
Published : 2013-12-01 20:36
Updated : 2014-03-04 10:56
NVD link : CVE-2012-0434
Mitre link : CVE-2012-0434
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
novell
- suse_cloud