LWN.net Logo

device-mapper-multipath: incorrect permissions

Package(s):device-mapper-multipath CVE #(s):CVE-2009-0115
Created:April 8, 2009 Updated:June 2, 2010
Description: From the Red Hat advisory: It was discovered that the multipathd daemon set incorrect permissions on the socket used to communicate with command line clients. An unprivileged, local user could use this flaw to send commands to multipathd, resulting in access disruptions to storage devices accessible via multiple paths and, possibly, file system corruption on these devices.
Alerts:
Gentoo 201006-10 2010-06-01
Fedora FEDORA-2009-3449 2009-04-09
Fedora FEDORA-2009-3453 2009-04-09
Debian DSA-1767-1 2009-04-09
CentOS CESA-2009:0411 2009-04-07
Red Hat RHSA-2009:0411-01 2009-04-07

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds