Vulnerability Name: | CVE-2012-1615 (CCN-74655) | ||||||||||||
Assigned: | 2012-04-06 | ||||||||||||
Published: | 2012-04-06 | ||||||||||||
Updated: | 2019-12-16 | ||||||||||||
Summary: | A Privilege Escalation vulnerability exits in Fedoraproject Sectool due to an incorrect DBus file. | ||||||||||||
CVSS v3 Severity: | 7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
| ||||||||||||
CVSS v2 Severity: | 4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P) 3.4 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
3.4 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||
Vulnerability Type: | CWE-269 | ||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2012-1615 Source: MISC Type: Third Party Advisory http://lists.fedoraproject.org/pipermail/package-announce/2012-April/076873.html Source: MISC Type: Third Party Advisory http://lists.fedoraproject.org/pipermail/package-announce/2012-May/081113.html Source: CCN Type: Fedora Packages Git Repositories fixing dbus config privilege escalation (#809437) Source: CCN Type: Fedora Project Web site sectool Source: MISC Type: Mailing List, Patch, Third Party Advisory http://www.openwall.com/lists/oss-security/2012/04/04/2 Source: CCN Type: OSVDB ID: 82461 sectool org.fedoraproject.sectool.mechanism.conf Local Privilege Escalation Source: CCN Type: BID-52884 Sectool DBus File Local Privilege Escalation Vulnerability Source: MISC Type: Third Party Advisory, VDB Entry http://www.securityfocus.com/bid/52884 Source: CCN Type: Red Hat Bugzilla Bug 809437 CVE-2012-1615 Merely installing sectool grants some permissions to users? Source: MISC Type: Issue Tracking, Third Party Advisory https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-1615 Source: MISC Type: Third Party Advisory, VDB Entry https://exchange.xforce.ibmcloud.com/vulnerabilities/74655 Source: XF Type: UNKNOWN sectool-dbus-priv-esc(74655) | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||||||
BACK |