First published: Mon May 11 2009(Updated: )
The Ubuntu clamav-milter.init script in clamav-milter before 0.95.1+dfsg-1ubuntu1.2 in Ubuntu 9.04 sets the ownership of the current working directory to the clamav account, which might allow local users to bypass intended access restrictions via read or write operations involving this directory.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu 22.04 LTS | =9.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-1601 is considered a medium severity vulnerability due to potential local privilege escalation.
To fix CVE-2009-1601, update to the latest version of clamav-milter that addresses this issue.
CVE-2009-1601 affects Ubuntu 9.04 systems running the clamav-milter before version 0.95.1+dfsg-1ubuntu1.2.
The implications of CVE-2009-1601 include the potential for local users to gain unauthorized access to files in the clamav-milter working directory.
While CVE-2009-1601 targets an outdated version of Ubuntu, it is relevant for environments still using that version.