CVE-2012-5519
published 2012-11-20CVE-2012-5519: CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using…
PriorityP340high7.2CVSS 2.0
AVLACLAuNCCICAC
EXPLOIT
EPSS
2.13%
79.9th percentile
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary files as root by leveraging the web interface.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | cups | — | — |
| apple | cups | >= 0 < 1.5.3-2.7 | 1.5.3-2.7 |
| apple | cups | >= 0 < 1.5.3-2.7 | 1.5.3-2.7 |
| apple | cups | >= 0 < 1.5.3-2.7 | 1.5.3-2.7 |
| apple | cups | >= 0 < 1.5.3-2.7 | 1.5.3-2.7 |
| debian | cups | < cups 1.5.3-2.7 (bookworm) | cups 1.5.3-2.7 (bookworm) |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH
vendor_debian7.2HIGH
vendor_redhat7.2HIGH
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
CUPS vulnerability
vendor_ubuntu·2012-12-05
CVE-2012-5519 CUPS vulnerability
Title: CUPS vulnerability
Summary: CUPS could be made to read files or run programs as an administrator.
It was discovered that users in the lpadmin group could modify certain CUPS
configuration options to escalate privileges. An attacker could use this to
potentially gain root privileges.
Instructions: In general, a standard system update will make all the necessary changes.
This update adds the new cups-files.conf configuration file for privileged
CUPS settings. In certain customized environments, these settings may need
to be manually moved to this new file. For more information, please see the
updated documentation installed with this package and inspect the CUPS
error log.
Red Hat
cups: privilege escalation for users of the CUPS SystemGroup group
vendor_redhat·2012-11-08·CVSS 7.2
CVE-2012-5519 [HIGH] CWE-284 cups: privilege escalation for users of the CUPS SystemGroup group
cups: privilege escalation for users of the CUPS SystemGroup group
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary files as root by leveraging the web interface.
Statement: This issue affects the version of cups as shipped with Red Hat Enterprise Linux 5 and 6. The Red Hat Security Response Team has rated this issue as having moderate security impact, a future update may address this flaw.
Debian
CVE-2012-5519: cups - CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux...
vendor_debian·2012·CVSS 7.2
CVE-2012-5519 [HIGH] CVE-2012-5519: cups - CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux...
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary files as root by leveraging the web interface.
Scope: local
bookworm: resolved (fixed in 1.5.3-2.7)
bullseye: resolved (fixed in 1.5.3-2.7)
forky: resolved (fixed in 1.5.3-2.7)
sid: resolved (fixed in 1.5.3-2.7)
trixie: resolved (fixed in 1.5.3-2.7)
GHSA
GHSA-ccjj-h3mm-j4rr: CUPS 1
ghsa_unreviewed·2022-05-17
CVE-2012-5519 [HIGH] GHSA-ccjj-h3mm-j4rr: CUPS 1
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary files as root by leveraging the web interface.
OSV
CVE-2012-5519: CUPS 1
osv·2012-11-20·CVSS 7.2
CVE-2012-5519 [HIGH] CVE-2012-5519: CUPS 1
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary files as root by leveraging the web interface.
No detection rules found.
Bugzilla
CVE-2012-5519 cups: Privilege escalation due improper drop of privileges for the members (different than root) of SystemGroup group [fedora-all]
bugzilla·2012-11-12·CVSS 7.2
CVE-2012-5519 [HIGH] CVE-2012-5519 cups: Privilege escalation due improper drop of privileges for the members (different than root) of SystemGroup group [fedora-all]
CVE-2012-5519 cups: Privilege escalation due improper drop of privileges for the members (different than root) of SystemGroup group [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and
Bugzilla
CVE-2012-5519 cups: privilege escalation for users of the CUPS SystemGroup group
bugzilla·2012-11-12·CVSS 7.2
CVE-2012-5519 [HIGH] CVE-2012-5519 cups: privilege escalation for users of the CUPS SystemGroup group
CVE-2012-5519 cups: privilege escalation for users of the CUPS SystemGroup group
A privilege escalation flaw was found in the way cups, a Common Unix Printing System, performed demarcation of privileges for the members of SystemGroup, different from the privileged-user account (root). A remote attacker, member of some of the CUPS SystemGroup groups, could use this flaw to read / write arbitrary system file with the privileges of the user running the CUPS daemon.
References:
[1] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=692791
[2] http://www.openwall.com/lists/oss-security/2012/11/10/5
Upstream bug report:
[3] http://www.cups.org/str.php?L4223 (private for now)
Discussion:
This issue affects the versions of the cups package, as shipped with Red Hat Enterprise Linux 5 and 6.
--
CTF
easy / README
ctf_writeups·CVSS 6.0
[MEDIUM] easy / README
---
layout: default
title: Easy Machines
parent: Machines
nav_order: 1
description: "120+ Easy HTB machine writeups with walkthroughs"
permalink: /machines/easy/
---
# HackTheBox Easy Machines - Comprehensive Reference
> Complete catalog of retired HTB Easy machines with OS, key vulnerability, attack path summary, and quality writeup links.
**Total: 100+ Easy Machines** | Updated: April 2026
---
## Quick Navigation
- [Classic / Legacy Machines (2017-2019)](#classic--legacy-machines-2017-2019)
- [2019-2020 Machines](#2019-2020-machines)
- [2021 Machines](#2021-machines)
- [2022 Machines](#2022-machines)
- [2023 Machines](#2023-machines)
- [2024 Machines (Season 4 & 5)](#2024-machines-season-4--5)
- [2025-2026 Machines (Season 6+)](#2025-2026-machines-season-6)
---
## Classic / Legac
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=692791http://lists.apple.com/archives/security-announce/2013/Jun/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00010.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0580.htmlhttp://support.apple.com/kb/HT5784http://www.openwall.com/lists/oss-security/2012/11/10/5http://www.openwall.com/lists/oss-security/2012/11/11/2http://www.openwall.com/lists/oss-security/2012/11/11/5http://www.securityfocus.com/bid/56494http://www.ubuntu.com/usn/USN-1654-1https://exchange.xforce.ibmcloud.com/vulnerabilities/80012http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=692791http://lists.apple.com/archives/security-announce/2013/Jun/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00010.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0580.htmlhttp://support.apple.com/kb/HT5784http://www.openwall.com/lists/oss-security/2012/11/10/5http://www.openwall.com/lists/oss-security/2012/11/11/2http://www.openwall.com/lists/oss-security/2012/11/11/5http://www.securityfocus.com/bid/56494http://www.ubuntu.com/usn/USN-1654-1https://exchange.xforce.ibmcloud.com/vulnerabilities/80012
2012-11-20
Published