Oval Definition:oval:org.mitre.oval:def:22811
Revision Date:2014-05-26Version:13
Title:ELSA-2009:0411: device-mapper-multipath security update (Moderate)
Description:The Device Mapper multipathing driver (aka multipath-tools or device-mapper-multipath) 0.4.8, as used in SUSE openSUSE, SUSE Linux Enterprise Server (SLES), Fedora, and possibly other operating systems, uses world-writable permissions for the socket file (aka /var/run/multipathd.sock), which allows local users to send arbitrary commands to the multipath daemon.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2009-0115
ELSA-2009:0411-01
Platform(s):Oracle Linux 5
Product(s):device-mapper-multipath
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • kpartx is earlier than 0:0.4.7-23.el5_3.2
  • OR device-mapper-multipath is earlier than 0:0.4.7-23.el5_3.2
  • BACK