Show plain JSON{"acknowledgement": "This issue was discovered by Red Hat.", "affected_release": [{"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2:client:el5", "package": "glusterfs-0:3.3.0.7rhs-1.el5", "product_name": "Native Client for RHEL 5 for Red Hat Storage", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:3:client:el6", "package": "glusterfs-0:3.3.0.7rhs-1.el6", "product_name": "Native Client for RHEL 6 for Red Hat Storage", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "appliance-0:1.7.1-1.el6rhs", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "augeas-0:0.9.0-1.el6", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "glusterfs-0:3.3.0.7rhs-1.el6rhs", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "gluster-swift-0:1.4.8-5.el6rhs", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "libvirt-0:0.9.10-21.el6_3.8", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "rhn-client-tools-0:1.0.0-73.el6rhs", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "sanlock-0:2.3-4.el6_3", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "sos-0:2.2-17.2.el6rhs", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:server:el6", "package": "vdsm-0:4.9.6-20.el6rhs", "product_name": "Red Hat Storage 2.0", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:console:el6", "package": "org.ovirt.engine-root-0:2.0.techpreview1-4", "product_name": "Red Hat Storage 2.0 Console", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHSA-2013:0691", "cpe": "cpe:/a:redhat:storage:2.0:console:el6", "package": "vdsm-0:4.9.6-20.el6rhs", "product_name": "Red Hat Storage 2.0 Console", "release_date": "2013-03-28T00:00:00Z"}, {"advisory": "RHBA-2012:1507", "cpe": "cpe:/a:redhat:enterprise_linux:6::hypervisor", "package": "sanlock-0:2.3-4.el6_3", "product_name": "RHEV 3.X Hypervisor and Agents for RHEL-6", "release_date": "2012-12-04T00:00:00Z"}], "bugzilla": {"description": "sanlock world writable /var/log/sanlock.log", "id": "887010", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=887010"}, "csaw": false, "cvss": {"cvss_base_score": "2.1", "cvss_scoring_vector": "AV:L/AC:L/Au:N/C:N/I:N/A:P", "status": "verified"}, "details": ["The setup_logging function in log.h in SANLock uses world-writable permissions for /var/log/sanlock.log, which allows local users to overwrite the file content or bypass intended disk-quota restrictions via standard filesystem write operations."], "name": "CVE-2012-5638", "package_state": [{"cpe": "cpe:/o:redhat:enterprise_linux:6", "fix_state": "Affected", "package_name": "sanlock", "product_name": "Red Hat Enterprise Linux 6"}], "public_date": "2012-08-22T00:00:00Z", "references": ["https://www.cve.org/CVERecord?id=CVE-2012-5638\nhttps://nvd.nist.gov/vuln/detail/CVE-2012-5638"], "threat_severity": "Low"}