CVE-2012-2314

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
03/07/2012
Last modified:
11/04/2025

Description

The bootloader configuration module (pyanaconda/bootloader.py) in Anaconda uses 755 permissions for /etc/grub.d, which allows local users to obtain password hashes and conduct brute force password guessing attacks.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:fedoraproject:anaconda:-:*:*:*:*:*:*:*