CVE-2009-1893Link Following in Dhcp

Severity
6.9MEDIUMNVD
EPSS
0.1%
top 76.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 17
Latest updateMay 2

Description

The configtest function in the Red Hat dhcpd init script for DHCP 3.0.1 in Red Hat Enterprise Linux (RHEL) 3 allows local users to overwrite arbitrary files via a symlink attack on an unspecified temporary file, related to the "dhcpd -t" command.

CVSS vector

AV:L/AC:M/C:C/I:C/A:CExploitability: 3.4 | Impact: 10.0

Affected Packages1 packages

NVDisc/dhcp3.0.1

Also affects: Enterprise Linux 3.0

🔴Vulnerability Details

2
GHSA
GHSA-45mc-hh26-869m: The configtest function in the Red Hat dhcpd init script for DHCP 32022-05-02
CVEList
CVE-2009-1893: The configtest function in the Red Hat dhcpd init script for DHCP 32009-07-17

📋Vendor Advisories

1
Red Hat
dhcp: insecure temporary file use in the dhcpd init script2009-07-14

💬Community

1
Bugzilla
CVE-2009-1893 dhcp: insecure temporary file use in the dhcpd init script2009-07-07