CVE Vulnerabilities

CVE-2012-5635

Published: Apr 09, 2013 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The GlusterFS functionality in Red Hat Storage Management Console 2.0, Native Client, and Server 2.0 allows local users to overwrite arbitrary files via a symlink attack on multiple temporary files created by (1) tests/volume.rc, (2) extras/hook-scripts/S30samba-stop.sh, and possibly other vectors, different vulnerabilities than CVE-2012-4417.

Affected Software

Name Vendor Start Version End Version
Glusterfs Gluster - (including) - (including)
Storage_management_console Redhat 2.0 (including) 2.0 (including)
Storage_native_client Redhat - (including) - (including)
Storage_server Redhat 2.0 (including) 2.0 (including)

References