usr/log.c in iscsid in open-iscsi (iscsi-initiator-utils) before 2.0-865 uses a semaphore with insecure permissions (world-writable/world-readable) for managing log messages using shared memory, which allows local users to cause a denial of service (hang) by grabbing the semaphore.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2007-06-14 12:30
Updated : 2017-10-10 18:32
NVD link : CVE-2007-3100
Mitre link : CVE-2007-3100
JSON object : View
CWE
Products Affected
redhat
- open_iscsi
- enterprise_linux