CVE-2012-6116 PUBLISHED

Reported by redhat · Published March 1, 2013

modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for the Candlepin bootstrap RPM, which allows local users to modify the Candlepin CA certificate by writing to this file.

Affected Products

VendorProductVersions
n/an/an/a
n/an/an/a

Timeline

References

Open in Interactive Console →