Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Robert Vogelgesang

#41851de 56,330
6.9CVSS total
Vulnerabilidades · 1
PT-2009-4354
6.9
2009-07-17
Red Hat · Dhcpd · CVE-2009-1893
Name of the Vulnerable Software and Affected Versions: Red Hat dhcpd version 3.0.1 in Red Hat Enterprise Linux (RHEL) 3 Description: The issue allows local users to overwrite arbitrary files via a symlink attack on a temporary file, related to the dhcpd init script's configtest function and the "dhcpd -t" command. Recommendations: For Red Hat dhcpd version 3.0.1 in Red Hat Enterprise Linux (RHEL) 3, consider restricting access to the configtest function in the dhcpd init script to prevent local users from overwriting arbitrary files until a fix is available.