suse · CVE-2012-5530

Quick triage

Priority: medium Published: 2021-05-30 13:07:11 UTC Updated: 2026-04-18 19:06:48 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2012-5530 severity moderate: SUSE including 259 source package names (libpcp-devel-3.10.4-1.23, libpcp-devel-3.11.9-3.116, …), 292 product×package rows across 12 product lines (SUSE Linux Enterprise Module for Development Tools 15, SUSE Linux Enterprise Server 16.0, … (12 product lines)): Fixed 292.

Description:

The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a /var/tmp/##### temporary file.

cvelogic Threat Intelligence