CVE-2012-0961 describes a vulnerability in specific versions of Apt (Advanced Package Tool) used in Ubuntu, where the /var/log/apt/term.log file is set with world-readable permissions. This misconfiguration allows local users to access sensitive shell information by reading the log file. The vulnerability has a low severity CVSS score of 2.1 (AV:L/AC:L/Au:N/C:P/I:N/A:N), indicating a local attack vector with low complexity and a potential impact of information disclosure. There is no evidence of active exploitation, no known exploit code available in Metasploit, Nuclei, or ExploitDB, and it has garnered no community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
0.8.16CPE matchmatch criteria | cpe:2.3:a:debian:advanced_package_tool:0.8.16:*:*:*:*:*:*:* | ||
0.9.7CPE matchmatch criteria | cpe:2.3:a:debian:apt:0.9.7:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.