CVE-2012-3457
12.08.2012, 00:55
PNP4Nagios 0.6 through 0.6.16 uses world-readable permissions for process_perfdata.cfg, which allows local users to obtain the Gearman shared secret by reading the file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| pnp4nagios | pnp4nagios | 0.6.0 |
| pnp4nagios | pnp4nagios | 0.6.1 |
| pnp4nagios | pnp4nagios | 0.6.2 |
| pnp4nagios | pnp4nagios | 0.6.3 |
| pnp4nagios | pnp4nagios | 0.6.4 |
| pnp4nagios | pnp4nagios | 0.6.5 |
| pnp4nagios | pnp4nagios | 0.6.6 |
| pnp4nagios | pnp4nagios | 0.6.7 |
| pnp4nagios | pnp4nagios | 0.6.10 |
| pnp4nagios | pnp4nagios | 0.6.11 |
| pnp4nagios | pnp4nagios | 0.6.12 |
| pnp4nagios | pnp4nagios | 0.6.13 |
| pnp4nagios | pnp4nagios | 0.6.14 |
| pnp4nagios | pnp4nagios | 0.6.15 |
| pnp4nagios | pnp4nagios | 0.6.16 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References