CVE-2009-1297
Dashboard / Vulnerabilities / CVE-2009-1297
CVE-2009-1297
Published: 23 Oct 2009Last Modified: 10 Apr 2026
Summary:
Details: iscsi_discovery in open-iscsi in SUSE openSUSE 10.3 through 11.1 and SUSE Linux Enterprise (SLE) 10 SP2 and 11, and other operating systems, allows local users to overwrite arbitrary files via a symlink attack on an unspecified temporary file that has a predictable name.
References: http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00001.html, http://www.mandriva.com/security/advisories?name=MDVSA-2013:109, https://wiki.mageia.org/en/Support/Advisories/MGASA-2012-0241
Affected packages
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
