CVE-2012-1093
CVE-2012-1093
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
21 Feb 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
The init script in the Debian x11-common package before 1:7.6+12 is vulnerable to a symlink attack that can lead to a privilege escalation during package installation.
Affected products
Debian · x11-commonWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://access.redhat.com/security/cve/cve-2012-1093https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3Ehttps://security-tracker.debian.org/tracker/CVE-2012-1093http://vladz.devzero.fr/012_x11-common-vuln.htmlhttp://www.openwall.com/lists/oss-security/2012/02/29/1http://www.openwall.com/lists/oss-security/2012/03/01/1