Oval Definition:oval:org.opensuse.security:def:20095023
Revision Date:2022-06-30Version:1
Title:CVE-2009-5023
Description:

The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8.5 allows local users to write to arbitrary files via a symlink attack on temporary files with predictable names, as demonstrated by /tmp/fail2ban-mail.txt.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2009-5023
Mitre CVE-2009-5023
SUSE CVE-2009-5023
openSUSE-SU-2011:1175-1
Platform(s):openSUSE 11.3
openSUSE 11.4
openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • Release Information
  • suse113 is installed
  • AND fail2ban less than 0.8.4-5.3.1
  • OR Package Information
  • suse114 is installed
  • AND fail2ban less than 0.8.4-11.12.1
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • SuSEfirewall2-fail2ban-0.9.5-1.1 is installed
  • OR fail2ban-0.9.5-1.1 is installed
  • OR nagios-plugins-fail2ban-0.9.5-1.1 is installed
  • BACK