CVE-2009-4664

Firewall Builder 3.0.4, 3.0.5, and 3.0.6, when running on Linux, allows local users to gain privileges via a symlink attack on an unspecified temporary file that is created by the iptables script.
Link Following
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.3 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:N/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 10%
VendorProductVersion
fwbuilderfirewall_builder
3.0.4
fwbuilderfirewall_builder
3.0.5
fwbuilderfirewall_builder
3.0.6
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
fwbuilder
bullseye
5.3.7-4.1
fixed
lenny
not-affected
bookworm
5.3.7-5
fixed
sid
5.3.7-8
fixed
trixie
5.3.7-8
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
fwbuilder
oneiric
not-affected
natty
not-affected
maverick
not-affected
lucid
not-affected
karmic
ignored
jaunty
ignored
intrepid
ignored
hardy
ignored
dapper
ignored