CVE-2012-5530 — Performance Co-pilot vulnerability
Severity
2.1LOWNVD
EPSS
0.1%
top 65.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 29
Latest updateMay 17
Description
The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a /var/tmp/##### temporary file.
CVSS vector
AV:L/AC:L/C:N/I:P/A:NExploitability: 3.9 | Impact: 2.9
Affected Packages2 packages
🔴Vulnerability Details
3GHSA▶
GHSA-5rxm-r7q9-4x4v: The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3↗2022-05-17
OSV▶
CVE-2012-5530: The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3↗2012-11-29
CVEList▶
CVE-2012-5530: The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3↗2012-11-29
📋Vendor Advisories
1Debian▶
CVE-2012-5530: pcp - The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before ...↗2012