CVE-2012-0871

UnknownEPSS 0.36%

Last modified

CVE-2012-0871 is a vulnerability of currently unknown severity. The session_link_x11_socket function in login/logind-session.c in systemd-logind in systemd, possibly 37 and earlier, allows local users to create or overwrite arbitrary files via a symlink attack on the X11 user directory in /run/user/.. EPSS estimates a 0.36% chance of exploitation in the next 30 days.

Description

The session_link_x11_socket function in login/logind-session.c in systemd-logind in systemd, possibly 37 and earlier, allows local users to create or overwrite arbitrary files via a symlink attack on the X11 user directory in /run/user/.

Metrics

EPSS Probability
0.36%

27.3th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Systemd ProjectSystemd<= 037
Systemd ProjectSystemd1
Systemd ProjectSystemd2
Systemd ProjectSystemd3
Systemd ProjectSystemd4
Systemd ProjectSystemd5
Systemd ProjectSystemd6
Systemd ProjectSystemd7
Systemd ProjectSystemd8
Systemd ProjectSystemd9
Systemd ProjectSystemd10
Systemd ProjectSystemd11
Systemd ProjectSystemd12
Systemd ProjectSystemd13
Systemd ProjectSystemd14
Systemd ProjectSystemd15
Systemd ProjectSystemd16
Systemd ProjectSystemd17
Systemd ProjectSystemd18
Systemd ProjectSystemd19
Systemd ProjectSystemd20
Systemd ProjectSystemd21
Systemd ProjectSystemd22
Systemd ProjectSystemd23
Systemd ProjectSystemd24
Systemd ProjectSystemd25
Systemd ProjectSystemd26
Systemd ProjectSystemd27
Systemd ProjectSystemd28
Systemd ProjectSystemd29
Systemd ProjectSystemd30
Systemd ProjectSystemd31
Systemd ProjectSystemd32
Systemd ProjectSystemd33
Systemd ProjectSystemd34
Systemd ProjectSystemd35
Systemd ProjectSystemd36
OpensuseOpensuse12.1

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2012-0871?
The session_link_x11_socket function in login/logind-session.c in systemd-logind in systemd, possibly 37 and earlier, allows local users to create or overwrite arbitrary files via a symlink attack on the X11 user directory in /run/user/.
How severe is CVE-2012-0871?
Severity scoring for CVE-2012-0871 is pending analysis. The EPSS model estimates a 0.36% probability of exploitation in the next 30 days.
How do I fix CVE-2012-0871?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2012-0871?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST