CVE-2012-3329

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
19/12/2012
Last modified:
11/04/2025

Description

IBM Advanced Settings Utility (ASU) through 3.62 and 3.70 through 9.21 and Bootable Media Creator (BoMC) through 2.30 and 3.00 through 9.21 on Linux allow local users to overwrite arbitrary files via a symlink attack on a (1) temporary file or (2) log file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:advanced_settings_utility:3.62:*:*:*:*:*:*:*
cpe:2.3:a:ibm:advanced_settings_utility:3.70:*:*:*:*:*:*:*
cpe:2.3:a:ibm:advanced_settings_utility:9.21:*:*:*:*:*:*:*
cpe:2.3:a:ibm:bootable_media_creator:2.30:*:*:*:*:*:*:*
cpe:2.3:a:ibm:bootable_media_creator:3.00:*:*:*:*:*:*:*
cpe:2.3:a:ibm:bootable_media_creator:9.21:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*