Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-2652

Опубликовано: 07 авг. 2012
Источник: debian
EPSS Низкий

Описание

The bdrv_open function in Qemu 1.0 does not properly handle the failure of the mkstemp function, when in snapshot node, which allows local users to overwrite or read arbitrary files via a symlink attack on an unspecified temporary file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qemufixed1.1.0+dfsg-1package
qemu-kvmfixed1.1.0+dfsg-1package

EPSS

Процентиль: 27%
0.00344
Низкий

Связанные уязвимости

ubuntu
около 14 лет назад

The bdrv_open function in Qemu 1.0 does not properly handle the failure of the mkstemp function, when in snapshot node, which allows local users to overwrite or read arbitrary files via a symlink attack on an unspecified temporary file.

redhat
около 14 лет назад

The bdrv_open function in Qemu 1.0 does not properly handle the failure of the mkstemp function, when in snapshot node, which allows local users to overwrite or read arbitrary files via a symlink attack on an unspecified temporary file.

nvd
около 14 лет назад

The bdrv_open function in Qemu 1.0 does not properly handle the failure of the mkstemp function, when in snapshot node, which allows local users to overwrite or read arbitrary files via a symlink attack on an unspecified temporary file.

github
около 4 лет назад

The bdrv_open function in Qemu 1.0 does not properly handle the failure of the mkstemp function, when in snapshot node, which allows local users to overwrite or read arbitrary files via a symlink attack on an unspecified temporary file.

suse-cvrf
около 13 лет назад

Security update for KVM

EPSS

Процентиль: 27%
0.00344
Низкий