CVE-2012-1105: Infoleak
Published Dec 5, 2019
·Updated
An Information Disclosure vulnerability exists in the Jasig Project php-pear-CAS 1.2.2 package in the /tmp directory. The Central Authentication Service client library archives the debug logging file in an insecure manner.
Affected Software
6 affected components
debian/glpi
debian/moodle
Apereo Phpcas=1.2.2
Fedoraproject Fedora=15
Fedoraproject Fedora=16
Debian Debian Linux=8.0
Remediation
Patch Available
Event History
Dec 5, 2019
CVE Published
via MITRE·06:26 PM
Data Sourced
via MITRE·06:26 PM
DescriptionWeakness
Feb 18, 2026
Data Sourced
via Debian·01:02 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2012-1105?
CVE-2012-1105 is an Information Disclosure vulnerability in the Jasig Project php-pear-CAS 1.2.2 package.
2
What is the severity of CVE-2012-1105?
CVE-2012-1105 has a severity value of 5.5, which is classified as medium.
3
How does CVE-2012-1105 affect Apereo Phpcas 1.2.2?
CVE-2012-1105 affects Apereo Phpcas 1.2.2 by exposing the debug logging file in an insecure manner, leading to information disclosure.
4
What is the impact of CVE-2012-1105?
The impact of CVE-2012-1105 is the disclosure of sensitive information stored in the debug logging file.
5
Are there any fixes available for CVE-2012-1105?
There are no known fixes available for CVE-2012-1105 at this time.