← Back

CVE-2009-1893

nvd nist
Published: Jul 17, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.9
Vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 3.4 / Impact: 10.0
Source: NVD

Description

The configtest function in the Red Hat dhcpd init script for DHCP 3.0.1 in Red Hat Enterprise Linux (RHEL) 3 allows local users to overwrite arbitrary files via a symlink attack on an unspecified temporary file, related to the "dhcpd -t" command.

Affected (16)

1 product
Enterprise Linux
1 product
Dhcp
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Redhat
Version 3.0
Version 3.0
Version 3.0
Version 3.0
Isc
Version 3.0.1 rc10
Version 3.0.1 rc11
Version 3.0.1 rc12
Version 3.0.1 rc13
Version 3.0.1 rc14
Version 3.0.1 rc1
Version 3.0.1 rc2
Version 3.0.1 rc5
Version 3.0.1 rc6
Version 3.0.1 rc7
Version 3.0.1 rc8
Version 3.0.1 rc9

References (16)

Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.