Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-4339
HistoryDec 15, 2011 - 12:00 a.m.

CVE-2011-4339

2011-12-1500:00:00
ubuntu.com
ubuntu.com
12

3.6 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:P/A:P

0.0004 Low

EPSS

Percentile

10.1%

ipmievd (aka the IPMI event daemon) in OpenIPMI, as used in the ipmitool
package 1.8.11 in Red Hat Enterprise Linux (RHEL) 6, Debian GNU/Linux,
Fedora 16, and other products uses 0666 permissions for its ipmievd.pid PID
file, which allows local users to kill arbitrary processes by writing to
this file.

Bugs

3.6 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:P/A:P

0.0004 Low

EPSS

Percentile

10.1%