CVE-2012-5519
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.13%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary files as root by leveraging the web interface.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 2.13% probability · 81th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- apple/cups
- Source
- secalert@redhat.com
References
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=692791Exploit
- http://lists.apple.com/archives/security-announce/2013/Jun/msg00000.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00003.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00006.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00010.html
- http://rhn.redhat.com/errata/RHSA-2013-0580.html
- http://support.apple.com/kb/HT5784
- http://www.openwall.com/lists/oss-security/2012/11/10/5
- http://www.openwall.com/lists/oss-security/2012/11/11/2
- http://www.openwall.com/lists/oss-security/2012/11/11/5
- http://www.securityfocus.com/bid/56494
- http://www.ubuntu.com/usn/USN-1654-1
- https://exchange.xforce.ibmcloud.com/vulnerabilities/80012
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=692791Exploit
- http://lists.apple.com/archives/security-announce/2013/Jun/msg00000.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00003.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00006.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00010.html
- http://rhn.redhat.com/errata/RHSA-2013-0580.html
- http://support.apple.com/kb/HT5784
- http://www.openwall.com/lists/oss-security/2012/11/10/5
- http://www.openwall.com/lists/oss-security/2012/11/11/2
- http://www.openwall.com/lists/oss-security/2012/11/11/5
- http://www.securityfocus.com/bid/56494
- http://www.ubuntu.com/usn/USN-1654-1
- https://exchange.xforce.ibmcloud.com/vulnerabilities/80012
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.