CVE-2012-4453
09.10.2012, 23:55
dracut.sh in dracut, as used in Red Hat Enterprise Linux 6, Fedora 16 and 17, and possibly other products, creates initramfs images with world-readable permissions, which might allow local users to obtain sensitive information.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dracut_project | dracut | 𝑥 < 024 |
| redhat | enterprise_linux_desktop | 6.0 |
| redhat | enterprise_linux_server | 6.0 |
| redhat | enterprise_linux_workstation | 6.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| dracut |
| ||||||||||||||||
| dracut-044 |
| ||||||||||||||||
| dracut-fips |
| ||||||||||||||||
| dracut-fips-044 |
| ||||||||||||||||
| dracut-ima |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| dracut |
| ||
| dracut-caps |
| ||
| dracut-fips |
| ||
| dracut-fips-aesni |
| ||
| dracut-generic |
| ||
| dracut-kernel |
| ||
| dracut-network |
| ||
| dracut-tools |
|
Common Weakness Enumeration
References