Описание
usr/mgmt_ipc.c in iscsid in open-iscsi (iscsi-initiator-utils) before 2.0-865 checks the client's UID on the listening AF_LOCAL socket instead of the new connection, which allows remote attackers to access the management interface and cause a denial of service (iscsid exit or iSCSI connection loss).
| Релиз | Статус | Примечание | 
|---|---|---|
| dapper | DNE  | |
| devel | not-affected  | |
| edgy | DNE  | |
| feisty | ignored  | end of life, was needed | 
| gutsy | not-affected  | |
| hardy | not-affected  | |
| upstream | needs-triage  | 
Показывать по
Ссылки на источники
2.1 Low
CVSS2
Связанные уязвимости
usr/mgmt_ipc.c in iscsid in open-iscsi (iscsi-initiator-utils) before 2.0-865 checks the client's UID on the listening AF_LOCAL socket instead of the new connection, which allows remote attackers to access the management interface and cause a denial of service (iscsid exit or iSCSI connection loss).
usr/mgmt_ipc.c in iscsid in open-iscsi (iscsi-initiator-utils) before 2.0-865 checks the client's UID on the listening AF_LOCAL socket instead of the new connection, which allows remote attackers to access the management interface and cause a denial of service (iscsid exit or iSCSI connection loss).
usr/mgmt_ipc.c in iscsid in open-iscsi (iscsi-initiator-utils) before ...
usr/mgmt_ipc.c in iscsid in open-iscsi (iscsi-initiator-utils) before 2.0-865 checks the client's UID on the listening AF_LOCAL socket instead of the new connection, which allows remote attackers to access the management interface and cause a denial of service (iscsid exit or iSCSI connection loss).
ELSA-2007-0497: Moderate: iscsi-initiator-utils security update (MODERATE)
2.1 Low
CVSS2