VulnerabilityModified
CVE-2012-1931
Opera before 11.62 on UNIX, when used in conjunction with an unspecified printing application, allows local users to overwrite arbitrary files via a symlink attack on a temporary file during printing.
MEDIUM 4.6EPSS 0.38%
Does this matter?
Lower severity and a low EPSS score (0.38%). Track it; it rarely justifies an emergency change on its own.
Description
Opera before 11.62 on UNIX, when used in conjunction with an unspecified printing application, allows local users to overwrite arbitrary files via a symlink attack on a temporary file during printing.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 0.38% probability · 31th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- opera/opera browser
- Source
- cve@mitre.org
References
- http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00012.html
- http://secunia.com/advisories/48535
- http://www.opera.com/docs/changelogs/unix/1162/
- http://www.opera.com/support/kb/view/1015/Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/74500
- http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00012.html
- http://secunia.com/advisories/48535
- http://www.opera.com/docs/changelogs/unix/1162/
- http://www.opera.com/support/kb/view/1015/Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/74500
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.