4.7
CVSSv2

CVE-2009-5023

Published: 10/06/2014 Updated: 24/06/2014
CVSS v2 Base Score: 4.7 | Impact Score: 6.9 | Exploitability Score: 3.4
VMScore: 418
Vector: AV:L/AC:M/Au:N/C:N/I:C/A:N

Vulnerability Summary

The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban prior to 0.8.5 allows local users to write to arbitrary files via a symlink attack on temporary files with predictable names, as demonstrated by /tmp/fail2ban-mail.txt.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fail2ban fail2ban 0.7.8

fail2ban fail2ban 0.7.7

fail2ban fail2ban 0.7.6

fail2ban fail2ban 0.7.5

fail2ban fail2ban 0.4.1

fail2ban fail2ban 0.4.0

fail2ban fail2ban 0.3.1

fail2ban fail2ban 0.3.0

fail2ban fail2ban 0.8.1

fail2ban fail2ban 0.7.9

fail2ban fail2ban 0.7.4

fail2ban fail2ban 0.7.2

fail2ban fail2ban 0.5.3

fail2ban fail2ban 0.5.1

fail2ban fail2ban 0.1.1

fail2ban fail2ban

fail2ban fail2ban 0.8.3

fail2ban fail2ban 0.7.0

fail2ban fail2ban 0.6.1

fail2ban fail2ban 0.6.0

fail2ban fail2ban 0.5.5

fail2ban fail2ban 0.8.2

fail2ban fail2ban 0.8.0

fail2ban fail2ban 0.7.3

fail2ban fail2ban 0.7.1

fail2ban fail2ban 0.5.4

fail2ban fail2ban 0.5.2

fail2ban fail2ban 0.5.0

fail2ban fail2ban 0.1.2

fail2ban fail2ban 0.1.0