CVE-2012-3504: Fedoraproject Crypto-Utils
Low severity, CVSS 3.6. EPSS: 0.5% chance of exploitation in the next 30 days.
The nssconfigFound function in genkey.pl in crypto-utils 2.4.1-34 allows local users to overwrite arbitrary files via a symlink attack on the "list" file in the current working directory.
Affected products
- Fedoraproject Crypto-Utils: version 2.4.1-34 only
Published 2012-10-10. Last modified 2026-06-16.