CVE-2012-1093

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
21/02/2020
Last modified:
21/11/2024

Description

The init script in the Debian x11-common package before 1:7.6+12 is vulnerable to a symlink attack that can lead to a privilege escalation during package installation.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:debian:x11-common:*:*:*:*:*:*:*:* 1\:7.6\+12 (excluding)
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*