CVE-2012-6136

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/11/2019
Last modified:
18/08/2020

Description

tuned 2.10.0 creates its PID file with insecure permissions which allows local users to kill arbitrary processes.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:redhat:tuned:2.10.0:-:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:17:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*