Security Advisory

CVE-2012-3484

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-08-26 19:00:00
Last updated 2024-09-16 16:59:08
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Tunnelblick 3.3beta20 and earlier relies on a test for specific ownership and permissions to determine whether a program can be safely executed, which allows local users to bypass intended access restrictions and gain privileges via a (1) user-mountable image or (2) network share.