CVE-2012-0871 describes a local privilege escalation vulnerability in systemd-logind, specifically in the session_link_x11_socket function, affecting systemd versions possibly 37 and earlier, including various openSUSE distributions. An attacker can exploit this flaw via a symlink attack on the X11 user directory in /run/user/, allowing them to create or overwrite arbitrary files. With a CVSS score of 6.3 (AV:L/AC:M/Au:N/C:N/I:C/A:C), this vulnerability requires local access and medium attack complexity but can lead to complete integrity and availability impact. There is no evidence of active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage, indicating low current threat activity.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 037CPE matchmatch criteria | cpe:2.3:a:systemd_project:systemd:*:*:*:*:*:*:*:* | ||
1CPE matchmatch criteria | cpe:2.3:a:systemd_project:systemd:1:*:*:*:*:*:*:* | ||
2CPE matchmatch criteria | cpe:2.3:a:systemd_project:systemd:2:*:*:*:*:*:*:* | ||
3CPE matchmatch criteria | cpe:2.3:a:systemd_project:systemd:3:*:*:*:*:*:*:* | ||
4CPE matchmatch criteria | cpe:2.3:a:systemd_project:systemd:4:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:N/C:N/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.