CVE-2012-3329: IBM Advanced Settings Utility

Low severity, CVSS 3.3. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Advanced Settings Utility (ASU) through 3.62 and 3.70 through 9.21 and Bootable Media Creator (BoMC) through 2.30 and 3.00 through 9.21 on Linux allow local users to overwrite arbitrary files via a symlink attack on a (1) temporary file or (2) log file.

Affected products

  • IBM Advanced Settings Utility: version 3.62 only; version 3.70 only; version 9.21 only
  • IBM Bootable Media Creator: version 2.30 only; version 3.00 only; version 9.21 only

Published 2012-12-19. Last modified 2026-06-16.