Release date:
Updated on:
Affected Systems:
SGI Performance Co-Pilot
Description:
--------------------------------------------------------------------------------
Bugtraq id: 56656
CVE (CAN) ID: CVE-2012-5530
Performance Co-Pilot provides a framework and services that support system-level Performance detection and management.
Performance Co-Pilot has a security vulnerability when managing temporary files used by different services. Local attackers can use Symbolic Links to attack and obtain sensitive information.
<* Source: Thomas Biege (thomas@suse.de)
Link: https://bugzilla.redhat.com/show_bug.cgi? CVE-2012-5530
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
SGI
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.sgi.com/