CVE-2012-1145: Red Hat Satellite

Medium severity, CVSS 5.0. EPSS: 3% chance of exploitation in the next 30 days.

spacewalk-backend in Red Hat Network Satellite 5.4 on Red Hat Enterprise Linux 6 does not properly authorize or authenticate uploads to the NULL organization when mod_wsgi is used, which allows remote attackers to cause a denial of service (/var partition disk consumption and failed updates) via a large number of package uploads.

Affected products

  • Red Hat Satellite: version 5.4 only

Published 2012-06-16. Last modified 2026-06-16.