CVE-2009-1297
EPSS 0.34%
描述
iscsi_discovery in open-iscsi in SUSE openSUSE 10.3 through 11.1 and SUSE Linux Enterprise (SLE) 10 SP2 and 11, and other operating systems, allows local users to overwrite arbitrary files via a symlink attack on an unspecified temporary file that has a predictable name.
如何修補 CVE-2009-1297
要修補 CVE-2009-1297,請將受影響套件升級到下列已修補版本。
- Debian/open-iscsi—升級至 2.0.871-1 或更新版本
CVE-2009-1297 正在被利用嗎?
低 — EPSS 為 0.3%,目前沒有觀察到大規模利用活動。
受影響套件(1)
- from 0, < 2.0.871-1