IBM Advanced Settings Utility (ASU) through 3.62 and 3.70 through 9.21 and Bootable Media Creator (BoMC) through 2.30 and 3.00 through 9.21 on Linux allow local users to overwrite arbitrary files via a symlink attack on a (1) temporary file or (2) log file.
2012-12-19T11:55:54.127
2025-04-11T00:51:21.963
Deferred
CVSSv2: 3.3 (LOW)
AV:L/AC:M/Au:N/C:N/I:P/A:P
3.4
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | advanced_settings_utility | 3.62 | Yes |
Application | ibm | advanced_settings_utility | 3.70 | Yes |
Application | ibm | advanced_settings_utility | 9.21 | Yes |
Application | ibm | bootable_media_creator | 2.30 | Yes |
Application | ibm | bootable_media_creator | 3.00 | Yes |
Application | ibm | bootable_media_creator | 9.21 | Yes |
Operating System | linux | linux_kernel | * | No |