Lucene search

K
cvelistRedhatCVELIST:CVE-2012-1106
HistoryJul 03, 2012 - 4:00 p.m.

CVE-2012-1106

2012-07-0316:00:00
redhat
www.cve.org
6

AI Score

7.3

Confidence

High

EPSS

0

Percentile

5.1%

The C handler plug-in in Automatic Bug Reporting Tool (ABRT), possibly 2.0.8 and earlier, does not properly set the group (GID) permissions on core dump files for setuid programs when the sysctl fs.suid_dumpable option is set to 2, which allows local users to obtain sensitive information.

AI Score

7.3

Confidence

High

EPSS

0

Percentile

5.1%