« List of all CVEs

CVE-2012-0871

Published: 4/18/2014 Last updated: 8/6/2024 Reserved: 1/19/2012

The session_link_x11_socket function in login/logind-session.c in systemd-logind in systemd, possibly 37 and earlier, allows local users to create or overwrite arbitrary files via a symlink attack on the X11 user directory in /run/user/.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (2)

conf-libudev ocaml-systemd

Products affected (1)

Product Vendor Version
n/a n/a stable <= 3.2.0

References (10)