CVE-2012-5530
published 2012-11-29CVE-2012-5530: The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a…
low2.1CVSS 3.1
AVLACLAuNCNIPAN
The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a /var/tmp/##### temporary file.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pcp | < pcp 3.7.1 (bookworm) | pcp 3.7.1 (bookworm) |
| opensuse | pcp | >= 0 < 3.7.1 | 3.7.1 |
| opensuse | pcp | >= 0 < 3.7.1 | 3.7.1 |
| opensuse | pcp | >= 0 < 3.7.1 | 3.7.1 |
| opensuse | pcp | >= 0 < 3.7.1 | 3.7.1 |
| sgi | performance_co-pilot | <= 3.6.9 | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
| sgi | performance_co-pilot | — | — |
CVSS provenance
nvd2.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
osv2.1LOW