Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2012-1106

The C handler plug-in in Automatic Bug Reporting Tool (ABRT), possibly 2.0.8 and earlier, does not properly set the group (GID) permissions on core dump files for setuid programs when the sysctl fs.suid_dumpable option is set to 2, which allows local users to obtain sensitive information.

  • Published: Jul 3, 2012
  • Updated: Apr 13, 2023
  • CVE: CVE-2012-1106
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 1.9
  • AV:L/AC:M/Au:N/C:P/I:N/A:N

CWEs: