CVE-2012-3386 is a vulnerability in GNU Automake
Published on August 7, 2012
The "make distcheck" rule in GNU Automake before 1.11.6 and 1.12.x before 1.12.2 grants world-writable permissions to the extraction directory, which introduces a race condition that allows local users to execute arbitrary code via unspecified vectors.
Products Associated with CVE-2012-3386
Want to know whenever a new CVE is published for GNU Automake? stack.watch will email you.
Exploit Probability
EPSS
0.14%
Percentile
33.91%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.