IBM Advanced Settings Utility (ASU) through 3.62 and 3.70 through 9.21 and Bootable Media Creator (BoMC) through 2.30 and 3.00 through 9.21 on Linux allow local users to overwrite arbitrary files via a symlink attack on a (1) temporary file or (2) log file.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2012-12-19 03:55
Updated : 2017-08-28 18:31
NVD link : CVE-2012-3329
Mitre link : CVE-2012-3329
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
ibm
- bootable_media_creator
- advanced_settings_utility
linux
- linux_kernel