Vulnerability Name: | CVE-2001-0529 (CCN-6676) | ||||||||
Assigned: | 2001-06-04 | ||||||||
Published: | 2001-06-04 | ||||||||
Updated: | 2017-10-10 | ||||||||
Summary: | OpenSSH version 2.9 and earlier, with X forwarding enabled, allows a local attacker to delete any file named 'cookies' via a symlink attack. | ||||||||
CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: NETBSD Type: Patch, Vendor Advisory NetBSD-SA2001-010 Source: CCN Type: Caldera International, Inc. Security Advisory CSSA-2001-023.0 Linux - openssh cookie file problem Source: BUGTRAQ Type: Exploit, Vendor Advisory 20010604 SSH allows deletion of other users files... Source: CCN Type: BugTraq Mailing List, Mon Jun 04 2001 - 05:14:29 CDT SSH allows deletion of other users files Source: BUGTRAQ Type: Vendor Advisory 20010604 Re: SSH allows deletion of other users files... Source: CCN Type: BugTraq Mailing List, Tue Jun 05 2001 - 05:04:18 CDT OpenSSH_2.5.2p2 RH7.0 <- version info Source: CCN Type: BugTraq Mailing List, Tue Jun 05 2001 - 08:31:42 CDT Re: SSH allows deletion of other users files Source: CCN Type: NetBSD Security Advisory NetBSD-SA2001-010 sshd(8) "cookies" file mishandling on X11 forwarding Source: MITRE Type: CNA CVE-2001-0529 Source: CONECTIVA Type: UNKNOWN CLA-2001:431 Source: IMMUNIX Type: UNKNOWN IMNX-2001-70-034-01 Source: BUGTRAQ Type: UNKNOWN 20010605 OpenSSH_2.5.2p2 RH7.0 <- version info Source: CALDERA Type: Vendor Advisory CSSA-2001-023.0 Source: CCN Type: US-CERT VU#655259 OpenSSH allows arbitrary file deletion via symlink redirection of temporary file Source: CERT-VN Type: US Government Resource VU#655259 Source: CCN Type: Immunix OS Security Advisory IMNX-2001-70-034-01 openssh Source: CCN Type: Conectiva Linux Announcement CLSA-2001:431 Remote vulnerabilities in openssh Source: CCN Type: OpenBSD Web site OpenBSD 2.9 release errata & patch list (see issue 006) Source: OPENBSD Type: UNKNOWN 20010612 Source: OSVDB Type: UNKNOWN 1853 Source: CCN Type: OSVDB ID: 1853 OpenSSH Symbolic Link 'cookies' File Removal Source: BID Type: Exploit, Patch, Vendor Advisory 2825 Source: CCN Type: BID-2825 OpenSSH Client X11 Forwarding Cookie Removal File Symbolic Link Vulnerability Source: XF Type: UNKNOWN openssh-symlink-file-deletion(6676) Source: XF Type: UNKNOWN openssh-symlink-file-deletion(6676) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |