PT-2001-1735 · Openssh+1 · Openssh+1

Published

2001-08-14

·

Updated

2024-07-08

·

CVE-2001-0529

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: OpenSSH versions 2.9 and earlier
Description: The issue allows a local attacker to delete any file named 'cookies' via a symlink attack when X forwarding is enabled.
Recommendations: For OpenSSH versions 2.9 and earlier, consider disabling X forwarding until a patch is available to prevent exploitation.

Exploit

Fix

Related Identifiers

ALT-PU-2024-3921
ALT-PU-2024-4077
ALT-PU-2024-4467
ALT-PU-2024-9513
CVE-2001-0529

Affected Products

Alt Linux
Openssh