Vulnerability Name:

CVE-2012-4455 (CCN-78943)

Assigned:2012-09-27
Published:2012-09-27
Updated:2023-02-13
Summary:
CVSS v3 Severity:5.1 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:6.2 Medium (CVSS v2 Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C)
5.4 Medium (Temporal CVSS v2 Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C/E:H/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): High
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
3.3 Low (CCN CVSS v2 Vector: AV:L/AC:M/Au:N/C:N/I:P/A:P)
2.9 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:N/I:P/A:P/E:H/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Consequences:File Manipulation
References:Source: MITRE
Type: CNA
CVE-2012-4455

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: oss-security: Raphael Geissert | 6 Sep
CVE request: opencryptoki insecure lock files handling

Source: CCN
Type: SA50702
openCryptoki Insecure Temporary File Security Issue

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: openCryptoki Web site
openCryptoki

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: BID-55627
openCryptoki Multiple Insecure File Creation Vulnerabilities

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: Red Hat Bugzilla Bug 730636
CVE-2012-4454 CVE-2012-4455 opencryptoki: insecure handling of files in the /tmp directory

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: XF
Type: UNKNOWN
opencryptoki-file-symlink(78943)

Oval Definitions
Definition IDClassTitleLast Modified
oval:org.opensuse.security:def:42408
P
Security update for ignition (Moderate)
2022-07-11
oval:org.opensuse.security:def:20124455
V
CVE-2012-4455
2022-05-20
oval:org.opensuse.security:def:26228
P
Security update for ghostscript (Moderate)
2022-01-14
oval:org.opensuse.security:def:32287
P
Security update for net-snmp (Important)
2022-01-05
oval:org.opensuse.security:def:32243
P
Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3) (Important)
2021-12-14
oval:org.opensuse.security:def:31720
P
Security update for xorg-x11-server (Important)
2021-12-14
oval:org.opensuse.security:def:31719
P
Security update for glib-networking (Important)
2021-12-13
oval:org.opensuse.security:def:26180
P
Security update for php74 (Moderate)
2021-12-06
oval:org.opensuse.security:def:32221
P
Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
2021-11-19
oval:org.opensuse.security:def:26151
P
Security update for python3 (Moderate)
2021-10-20
oval:org.opensuse.security:def:26144
P
Security update for libqt5-qtsvg (Moderate)
2021-10-11
oval:org.opensuse.security:def:26127
P
Security update for postgresql12 (Moderate)
2021-09-16
oval:org.opensuse.security:def:32182
P
Security update for transfig (Moderate)
2021-09-16
oval:org.opensuse.security:def:32173
P
Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3) (Important)
2021-08-25
oval:org.opensuse.security:def:32133
P
Security update for libgcrypt (Important)
2021-06-24
oval:org.opensuse.security:def:26076
P
Security update for webkit2gtk3 (Important)
2021-06-17
oval:org.opensuse.security:def:42660
P
openCryptoki-3.2-0.11.26 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:36253
P
openCryptoki-3.2-0.11.26 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:36526
P
openCryptoki-3.2-0.11.26 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:32925
P
Security update for hivex (Moderate)
2021-05-26
oval:org.opensuse.security:def:32086
P
Security update for java-1_7_0-openjdk (Moderate)
2021-04-29
oval:org.opensuse.security:def:32077
P
Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
2021-04-28
oval:org.opensuse.security:def:31731
P
Security update for java-1_7_1-ibm (Important)
2021-02-18
oval:org.opensuse.security:def:32964
P
Security update for MozillaFirefox (Important)
2021-01-29
oval:org.opensuse.security:def:26087
P
Security update for sudo (Important)
2021-01-26
oval:org.opensuse.security:def:26075
P
Security update for ImageMagick (Important)
2021-01-22
oval:org.opensuse.security:def:31685
P
Security update for java-1_8_0-ibm (Moderate)
2021-01-05
oval:org.opensuse.security:def:25976
P
Security update for curl (Moderate)
2020-12-10
oval:org.opensuse.security:def:36001
P
openCryptoki-2.4.2-0.9.12 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:25562
P
Security update for MozillaFirefox (Important)
2020-12-01
oval:org.opensuse.security:def:26999
P
openCryptoki on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:31467
P
Security update for postgresql94 (Important)
2020-12-01
oval:org.opensuse.security:def:32029
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:26534
P
curl on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:26006
P
Security update for mariadb (Important)
2020-12-01
oval:org.opensuse.security:def:32434
P
Security update for xen (Important)
2020-12-01
oval:org.opensuse.security:def:26705
P
gd on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:33216
P
openCryptoki on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:27489
P
libsss_idmap-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:25550
P
Security update for squid (Important)
2020-12-01
oval:org.opensuse.security:def:31834
P
Security update for bind (Important)
2020-12-01
oval:org.opensuse.security:def:26326
P
Security update for MozillaThunderbird (Moderate)
2020-12-01
oval:org.opensuse.security:def:25835
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:31553
P
Security update for sqlite3 (Moderate)
2020-12-01
oval:org.opensuse.security:def:26481
P
Security update for chromium (Moderate)
2020-12-01
oval:org.opensuse.security:def:25814
P
Security update for flash-player (Important)
2020-12-01
oval:org.opensuse.security:def:32329
P
Security update for samba (Moderate)
2020-12-01
oval:org.opensuse.security:def:27251
P
openCryptoki on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:26501
P
Security update for chromium (Important)
2020-12-01
oval:org.opensuse.security:def:32539
P
krb5 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:25892
P
Security update for gstreamer-0_10-plugins-good (Important)
2020-12-01
oval:org.opensuse.security:def:26807
P
perl-spamassassin on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:26279
P
Security update for gimp (Low)
2020-12-01
oval:org.opensuse.security:def:26268
P
Security update for libreoffice (Moderate)
2020-12-01
oval:org.opensuse.security:def:25626
P
Security update for libqt5-qtbase (Important)
2020-12-01
oval:org.opensuse.security:def:31468
P
Security update for powerpc-utils
2020-12-01
oval:org.opensuse.security:def:26379
P
Security update for irssi (Moderate)
2020-12-01
oval:org.opensuse.security:def:25802
P
Recommended update for LibreOffice (Moderate)
2020-12-01
oval:org.opensuse.security:def:26578
P
lcms on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:26360
P
Security update for MozillaThunderbird (Moderate)
2020-12-01
oval:org.opensuse.security:def:32473
P
Security update for xorg-x11-server (Important)
2020-12-01
oval:org.opensuse.security:def:31805
P
Security update for apache2 (Moderate)
2020-12-01
oval:org.opensuse.security:def:26754
P
libneon27 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:27524
P
openCryptoki on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:25551
P
Security update for tomcat (Important)
2020-12-01
oval:org.opensuse.security:def:31921
P
Security update for ghostscript-library (Important)
2020-12-01
oval:org.opensuse.security:def:26964
P
libpoppler-glib4 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:26520
P
PolicyKit on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:25878
P
Security update for libqt4 (Moderate)
2020-12-01
oval:org.opensuse.security:def:32385
P
Security update for tightvnc (Important)
2020-12-01
oval:org.opensuse.security:def:26652
P
xorg-x11 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:33177
P
librpcsecgss on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:26851
P
Mesa-32bit on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:31777
P
Security update for MozillaFirefox (Important)
2020-12-01
oval:org.opensuse.security:def:26282
P
Security update for libproxy (Important)
2020-12-01
oval:org.opensuse.security:def:25754
P
Security update for flash-player (Moderate)
2020-12-01
oval:org.opensuse.security:def:31479
P
Security update for python (Moderate)
2020-12-01
oval:org.opensuse.security:def:26432
P
Security update for ansible (Moderate)
2020-12-01
oval:org.opensuse.security:def:25803
P
Security update for flash-player (Moderate)
2020-12-01
oval:org.opensuse.security:def:27216
P
libsnmp15-32bit on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:26417
P
Security update for Mozilla Thunderbird (Moderate)
2020-12-01
oval:org.opensuse.security:def:32495
P
clamav on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:31937
P
Security update for glibc (Moderate)
2020-12-01
oval:org.opensuse.security:def:26793
P
openswan on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:26229
P
Security update for xawtv (Moderate)
2020-12-01
oval:com.ubuntu.cosmic:def:201244550000000
V
CVE-2012-4455 on Ubuntu 18.10 (cosmic) - low.
2012-10-10
oval:com.ubuntu.artful:def:20124455000
V
CVE-2012-4455 on Ubuntu 17.10 (artful) - low.
2012-10-10
oval:com.ubuntu.trusty:def:20124455000
V
CVE-2012-4455 on Ubuntu 14.04 LTS (trusty) - low.
2012-10-10
oval:com.ubuntu.bionic:def:201244550000000
V
CVE-2012-4455 on Ubuntu 18.04 LTS (bionic) - low.
2012-10-10
oval:com.ubuntu.bionic:def:20124455000
V
CVE-2012-4455 on Ubuntu 18.04 LTS (bionic) - low.
2012-10-10
oval:com.ubuntu.xenial:def:20124455000
V
CVE-2012-4455 on Ubuntu 16.04 LTS (xenial) - low.
2012-10-10
oval:com.ubuntu.xenial:def:201244550000000
V
CVE-2012-4455 on Ubuntu 16.04 LTS (xenial) - low.
2012-10-10
oval:com.ubuntu.cosmic:def:20124455000
V
CVE-2012-4455 on Ubuntu 18.10 (cosmic) - low.
2012-10-10
oval:com.ubuntu.disco:def:201244550000000
V
CVE-2012-4455 on Ubuntu 19.04 (disco) - low.
2012-10-10
oval:com.ubuntu.precise:def:20124455000
V
CVE-2012-4455 on Ubuntu 12.04 LTS (precise) - low.
2012-10-10
BACK