Back to Database
Status published
Low
CVE-2012-4518
ibacm 1.0.7 creates files with world-writable permissions, which allows local...
Vulnerability Description
ibacm 1.0.7 creates files with world-writable permissions, which allows local users to overwrite the ib_acm daemon log or ibacm.port file.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2012-4518
Credits & Attribution
No credits recorded in the NVD database.
References
- http://rhn.redhat.com/errata/RHSA-2013-0509.html
- http://www.openwall.com/lists/oss-security/2012/10/11/6
- http://git.openfabrics.org/git?p=~shefty/ibacm.git%3Ba=commit%3Bh=d204fca2b6298d7799e918141ea8e11e7ad43cec
- http://www.openwall.com/lists/oss-security/2012/10/11/9
- http://www.securityfocus.com/bid/55890
More from openfabrics
View All →CVE-2012-4517
ibacm before 1.0.6 does not properly manage reference counts for...
Medium
5
CVE-2012-4516
librdmacm 1.0.16, when ibacm.port is not specified, connects to port...
Medium
5.8
CVE-2011-3345
ulp/sdp/sdp_proc.c in the ib_sdp module (aka ib_sdp.ko) in the ofa_kernel...
Low
2.1
CVE-2010-4173
The default configuration of libsdp.conf in libsdp 1.1.104 and earlier...
Low
3.3
CVE-2010-1693
openibd in OpenFabrics Enterprise Distribution (OFED) 1.5.2 allows local users...
Medium
6.3
Affected Vendor
openfabrics
View all reports →Affected Software
ibacm
Vulnerable Versions:
1.0.7
Timeline
Official Publish:
October 22nd, 2012
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.