CVE-2012-1093: Debian Linux

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

The init script in the Debian x11-common package before 1:7.6+12 is vulnerable to a symlink attack that can lead to a privilege escalation during package installation.

Affected products

  • Debian Debian Linux: version 8.0 only; version 9.0 only; version 10.0 only
  • Debian x11-Common: before 1\:7.6\+12 (fixed in 1\:7.6\+12)

Published 2020-02-21. Last modified 2026-06-16.