First published: Mon Nov 25 2019(Updated: )
gnome-system-log polkit policy allows arbitrary files on the system to be read
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/gnome-system-log | 3.9.90-8 | |
Red Hat Gnome System Log | ||
Fedora | =17 | |
Fedora | =18 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-5535 is considered a medium severity vulnerability due to its potential to allow unauthorized file access.
To fix CVE-2012-5535, update gnome-system-log to version 3.9.90-8 or later on Debian or ensure you have the patched versions available for Fedora 17 or 18.
CVE-2012-5535 affects gnome-system-log on Debian and Fedora versions 17 and 18.
CVE-2012-5535 allows for improper policy configuration that can lead to arbitrary file reading on the system.
There is no public indication that CVE-2012-5535 is actively being exploited, but it is advisable to apply the necessary updates to mitigate potential risks.