The rm_rf_children function in util.c in the systemd-logind login manager in systemd before 44, when logging out, allows local users to delete arbitrary files via a symlink attack on unspecified files, related to "particular records related with user session."
References
Configurations
History
No history.
Information
Published : 2012-07-12 20:55
Updated : 2012-08-14 03:35
NVD link : CVE-2012-1174
Mitre link : CVE-2012-1174
CVE.ORG link : CVE-2012-1174
JSON object : View
Products Affected
linux
- systemd
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')