CVE-2012-5530

PCP <3.6.10 - Local Privilege Escalation

Title source: llm

Description

The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a /var/tmp/##### temporary file.

Scores

EPSS 0.0014
EPSS Percentile 34.5%

Classification

CWE
CWE-264
Status draft

Affected Products (17)

sgi/performance_co-pilot < 3.6.9
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
sgi/performance_co-pilot
... and 2 more

Timeline

Published Nov 29, 2012
Tracked Since Feb 18, 2026