usr/mgmt_ipc.c in iscsid in open-iscsi (iscsi-initiator-utils) before 2.0-865 checks the client's UID on the listening AF_LOCAL socket instead of the new connection, which allows remote attackers to access the management interface and cause a denial of service (iscsid exit or iSCSI connection loss).
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-06-14 12:30
Updated : 2017-10-10 18:32
NVD link : CVE-2007-3099
Mitre link : CVE-2007-3099
JSON object : View
CWE
Products Affected
redhat
- enterprise_linux