CVE-2012-1174
published 2012-07-12CVE-2012-1174: The rm_rf_children function in util.c in the systemd-logind login manager in systemd before 44, when logging out, allows local users to delete arbitrary files…
PriorityP411low3.3CVSS 2.0
AVLACMAuNCNIPAP
EPSS
0.32%
24.7th percentile
The rm_rf_children function in util.c in the systemd-logind login manager in systemd before 44, when logging out, allows local users to delete arbitrary files via a symlink attack on unspecified files, related to "particular records related with user session."
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | systemd | < systemd 44-1 (bookworm) | systemd 44-1 (bookworm) |
| linux | systemd | — | — |
| systemd_project | systemd | >= 0 < 44-1 | 44-1 |
| systemd_project | systemd | >= 0 < 44-1 | 44-1 |
| systemd_project | systemd | >= 0 < 44-1 | 44-1 |
| systemd_project | systemd | >= 0 < 44-1 | 44-1 |
CVSS provenance
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:N/I:P/A:P
osv3.3LOW
vendor_debian3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mmfm-j35m-wr8v: The rm_rf_children function in util
ghsa_unreviewed·2022-05-17
CVE-2012-1174 [LOW] CWE-362 GHSA-mmfm-j35m-wr8v: The rm_rf_children function in util
The rm_rf_children function in util.c in the systemd-logind login manager in systemd before 44, when logging out, allows local users to delete arbitrary files via a symlink attack on unspecified files, related to "particular records related with user session."
OSV
CVE-2012-1174: The rm_rf_children function in util
osv·2012-07-12·CVSS 3.3
CVE-2012-1174 [LOW] CVE-2012-1174: The rm_rf_children function in util
The rm_rf_children function in util.c in the systemd-logind login manager in systemd before 44, when logging out, allows local users to delete arbitrary files via a symlink attack on unspecified files, related to "particular records related with user session."
Debian
CVE-2012-1174: systemd - The rm_rf_children function in util.c in the systemd-logind login manager in sys...
vendor_debian·2012·CVSS 3.3
CVE-2012-1174 [LOW] CVE-2012-1174: systemd - The rm_rf_children function in util.c in the systemd-logind login manager in sys...
The rm_rf_children function in util.c in the systemd-logind login manager in systemd before 44, when logging out, allows local users to delete arbitrary files via a symlink attack on unspecified files, related to "particular records related with user session."
Scope: local
bookworm: resolved (fixed in 44-1)
bullseye: resolved (fixed in 44-1)
forky: resolved (fixed in 44-1)
sid: resolved (fixed in 44-1)
trixie: resolved (fixed in 44-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-1174 systemd (systemd-logind): TOCTOU race condition by removing user session [fedora-all]
bugzilla·2012-03-16·CVSS 3.3
CVE-2012-1174 [LOW] CVE-2012-1174 systemd (systemd-logind): TOCTOU race condition by removing user session [fedora-all]
CVE-2012-1174 systemd (systemd-logind): TOCTOU race condition by removing user session [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/upd
Bugzilla
CVE-2012-1174 systemd (systemd-logind): TOCTOU race condition by removing user session
bugzilla·2012-03-14·CVSS 3.3
CVE-2012-1174 [LOW] CVE-2012-1174 systemd (systemd-logind): TOCTOU race condition by removing user session
CVE-2012-1174 systemd (systemd-logind): TOCTOU race condition by removing user session
A TOCTOU race condition was found in the way the systemd-logind login manager of the systemd, a system and service manager for Linux, performed removal of particular records related with user session upon user logout. A local attacker could use this flaw to conduct symbolic link attacks, potentially leading to removal of arbitrary system file.
Discussion:
Created attachment 570001
Proposed patch from Michal Schmidt, original issue reporter
---
This issue affects the versions of the systemd package, as shipped with Fedora release of 15 and 16.
---
The preliminary embargo date for this issue has been set up to this Friday, 2012-03-16.
---
The CVE identifier of CVE-2012-1174 has been assigned to th
http://cgit.freedesktop.org/systemd/systemd/commit/?id=5ebff5337594d690b322078c512eb222d34aaa82http://lists.fedoraproject.org/pipermail/package-announce/2012-April/079075.htmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2012:030http://www.openwall.com/lists/oss-security/2012/03/16/21https://bugzilla.redhat.com/show_bug.cgi?id=803358http://cgit.freedesktop.org/systemd/systemd/commit/?id=5ebff5337594d690b322078c512eb222d34aaa82http://lists.fedoraproject.org/pipermail/package-announce/2012-April/079075.htmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2012:030http://www.openwall.com/lists/oss-security/2012/03/16/21https://bugzilla.redhat.com/show_bug.cgi?id=803358
2012-07-12
Published