~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2009-3556

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2009-3556
2
 
PublicDate: 2010-01-27
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3556
5
 
Description:
6
 
 A certain Red Hat configuration step for the qla2xxx driver in the Linux
7
 
 kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when N_Port ID
8
 
 Virtualization (NPIV) hardware is used, sets world-writable permissions for
9
 
 the (1) vport_create and (2) vport_delete files under
10
 
 /sys/class/scsi_host/, which allows local users to make arbitrary changes
11
 
 to SCSI host attributes by modifying these files.
12
 
Ubuntu-Description:
13
 
Notes:
14
 
 mdeslaur> RH-specific
15
 
Bugs:
16
 
 https://bugzilla.redhat.com/show_bug.cgi?id=537177
17
 
Priority: medium
18
 
Discovered-by:
19
 
Assigned-to:
20
 
 
21
 
Patches_linux-source-2.6.15:
22
 
upstream_linux-source-2.6.15: not-affected
23
 
dapper_linux-source-2.6.15: not-affected
24
 
hardy_linux-source-2.6.15: DNE
25
 
intrepid_linux-source-2.6.15: DNE
26
 
jaunty_linux-source-2.6.15: DNE
27
 
karmic_linux-source-2.6.15: DNE
28
 
devel_linux-source-2.6.15: DNE
29
 
 
30
 
Patches_linux:
31
 
upstream_linux: not-affected
32
 
dapper_linux: DNE
33
 
hardy_linux: not-affected
34
 
intrepid_linux: not-affected
35
 
jaunty_linux: not-affected
36
 
karmic_linux: not-affected
37
 
devel_linux: not-affected