|
|
| |
|
| |
pcp: insecure temporary file use
| Package(s): | pcp |
CVE #(s): | CVE-2012-5530
|
| Created: | November 23, 2012 |
Updated: | November 28, 2012 |
| Description: |
From the Fedora advisory:
A security flaw was found in the way Performance Co-Pilot (PCP), a framework and services to support system-level performance monitoring and performance management, performed management of its temporary files used by various services from the suite. A local attacker could use this flaw to conduct symbolic link attacks (alter or remove different system files, accessible with the privileges of the user running the PCP suite, than it was originally intended). |
| Alerts: |
|
( Log in to post comments)
|
|
|