5.5
CVSSv3

CVE-2012-0842

Published: 19/11/2019 Updated: 18/08/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

surf: cookie jar has read access from other local user

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

suckless surf

debian debian linux 8.0

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Debian Bug report logs - #659296 surf: world-readable cookie jar Package: surf; Maintainer for surf is Reiner Herrmann <reiner@reiner-hde>; Source for surf is src:surf (PTS, buildd, popcon) Reported by: Jakub Wilk <jwilk@debianorg> Date: Thu, 9 Feb 2012 23:09:02 UTC Severity: grave Tags: security Found in versio ...