CVE Vulnerabilities

CVE-2001-0890

Published: Dec 11, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Certain backend drivers in the SANE library 1.0.3 and earlier, as used in frontend software such as XSane, allows local users to modify files via a symlink attack on temporary files.

Affected Software

NameVendorStart VersionEnd Version
SaneSane1.0.0 (including)1.0.0 (including)
SaneSane1.0.1 (including)1.0.1 (including)
SaneSane1.0.2 (including)1.0.2 (including)
SaneSane1.0.3 (including)1.0.3 (including)
SaneSane1.0.4 (including)1.0.4 (including)
SaneSane1.0.5 (including)1.0.5 (including)
SaneSane1.0.6 (including)1.0.6 (including)
Red Hat Linux 7.0RedHat*
Red Hat Linux 7.1RedHat*
Red Hat Linux 7.2RedHat*
Red Hat Powertools 6.0RedHat*
Red Hat Powertools 6.1RedHat*
Red Hat Powertools 6.2RedHat*

References