CVE-2009-1893
17.07.2009, 16:30
The configtest function in the Red Hat dhcpd init script for DHCP 3.0.1 in Red Hat Enterprise Linux (RHEL) 3 allows local users to overwrite arbitrary files via a symlink attack on an unspecified temporary file, related to the "dhcpd -t" command.
Vendor | Product | Version |
---|---|---|
redhat | enterprise_linux | 3.0 |
redhat | enterprise_linux | 3.0 |
redhat | enterprise_linux | 3.0 |
redhat | enterprise_linux | 3.0 |
isc | dhcp | 3.0.1:rc1 |
isc | dhcp | 3.0.1:rc10 |
isc | dhcp | 3.0.1:rc11 |
isc | dhcp | 3.0.1:rc12 |
isc | dhcp | 3.0.1:rc13 |
isc | dhcp | 3.0.1:rc14 |
isc | dhcp | 3.0.1:rc2 |
isc | dhcp | 3.0.1:rc5 |
isc | dhcp | 3.0.1:rc6 |
isc | dhcp | 3.0.1:rc7 |
isc | dhcp | 3.0.1:rc8 |
isc | dhcp | 3.0.1:rc9 |
𝑥
= Vulnerable software versions
References