CVE-2012-3440
published 2012-08-08CVE-2012-3440: A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 allows local users to overwrite arbitrary files via a symlink attack on the…
PriorityP418medium5.6CVSS 2.0
AVLACHAuNCNICAC
EPSS
0.43%
35.2th percentile
A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 allows local users to overwrite arbitrary files via a symlink attack on the /var/tmp/nsswitch.conf.bak temporary file.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | sudo | — | — |
| redhat | enterprise_linux | — | — |
| todd_miller | sudo | — | — |
| vmware | esxi | — | — |
| vmware | vcenter_server | — | — |
| vmware | vmware_vsphere | — | — |
| vmware | vmware_workstation | — | — |
CVSS provenance
nvdv2.05.6MEDIUMAV:L/AC:H/Au:N/C:N/I:C/A:C
vendor_debian5.6LOW
vendor_redhat5.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VMware
VMware security updates for vCenter Server
vendor_vmware·2013-04-25·CVSS 7.2
CVE-2012-2337 [HIGH] VMware security updates for vCenter Server
VMSA-2013-0006: VMware security updates for vCenter Server
a. vCenter Server AD anonymous LDAP binding credential by-pass vCenter Server when deployed in an environment that uses Active Directory (AD) with anonymous LDAP binding enabled doesn't properly handle login credentials. In this environment, authenticating to vCenter Server with a valid user name and a blank password may be successful even if a non-blank password is required for the account. The issue is present on vCenter Server 5.1, 5.1a and 5.1b if AD anonymous LDAP binding is enabled. The issue is addressed in vCenter Server 5.1 Update 1 by removing the possibility to authenticate using blank passwords. This change in the authentication mechanism is present regardless if anonymous binding is enabled or not.
CVEs: CVE-2012-233
Red Hat
sudo: insecure temporary file use in RPM %postun script
vendor_redhat·2012-08-07·CVSS 5.6
CVE-2012-3440 [MEDIUM] CWE-367 sudo: insecure temporary file use in RPM %postun script
sudo: insecure temporary file use in RPM %postun script
A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 allows local users to overwrite arbitrary files via a symlink attack on the /var/tmp/nsswitch.conf.bak temporary file.
Package: sudo (Red Hat Enterprise Linux 4) - Not affected
Package: sudo (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2012-3440: sudo - A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 all...
vendor_debian·2012·CVSS 5.6
CVE-2012-3440 [MEDIUM] CVE-2012-3440: sudo - A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 all...
A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 allows local users to overwrite arbitrary files via a symlink attack on the /var/tmp/nsswitch.conf.bak temporary file.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
GHSA
GHSA-f2xg-m95q-882q: A certain Red Hat script for sudo 1
ghsa_unreviewed·2022-05-17
CVE-2012-3440 [MEDIUM] CWE-59 GHSA-f2xg-m95q-882q: A certain Red Hat script for sudo 1
A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 allows local users to overwrite arbitrary files via a symlink attack on the /var/tmp/nsswitch.conf.bak temporary file.
No detection rules found.
No public exploits indexed.
http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.htmlhttp://www.securityfocus.com/bid/54868https://bugzilla.redhat.com/show_bug.cgi?id=844442http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.htmlhttp://www.securityfocus.com/bid/54868https://bugzilla.redhat.com/show_bug.cgi?id=844442
2012-08-08
Published