CVE-2012-3449: Openvswitch
Low severity, CVSS 3.6. EPSS: 0.3% chance of exploitation in the next 30 days.
Open vSwitch 1.4.2 uses world writable permissions for (1) /var/lib/openvswitch/pki/controllerca/incoming/ and (2) /var/lib/openvswitch/pki/switchca/incoming/, which allows local users to delete and overwrite arbitrary files.
Affected products
- Openvswitch Openvswitch: version 1.4.2 only
Published 2012-08-07. Last modified 2026-06-16.