CVE-2012-6136
MEDIUMtuned 2.10.0 - Incorrect Default Permissions in PID File
Title source: llmDescription
tuned 2.10.0 creates its PID file with insecure permissions which allows local users to kill arbitrary processes.
References (2)
Core 2
Core References
Third Party Advisory x_refsource_misc
https://security-tracker.debian.org/tracker/CVE-2012-6136
Issue Tracking, Third Party Advisory x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-6136
Scores
CVSS v3
5.5
EPSS
0.0027
EPSS Percentile
18.3%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-276
Status
published
Products (7)
debian/debian_linux
10.0
fedoraproject/fedora
17
redhat/enterprise_linux
6.0
redhat/enterprise_linux_desktop
6.0
redhat/enterprise_linux_server
6.0
redhat/enterprise_linux_workstation
6.0
redhat/tuned
2.10.0
Published
Nov 20, 2019
Tracked Since
Feb 18, 2026