Vulnerabilities > Redhat > Cman

DATE CVE VULNERABILITY TITLE RISK
2009-03-30 CVE-2008-6552 Link Following vulnerability in multiple products
Red Hat Cluster Project 2.x allows local users to modify or overwrite arbitrary files via symlink attacks on files in /tmp, involving unspecified components in Resource Group Manager (aka rgmanager) before 2.03.09-1, gfs2-utils before 2.03.09-1, and CMAN - The Cluster Manager before 2.03.09-1 on Fedora 9.
6.9
2008-09-29 CVE-2008-4192 Link Following vulnerability in Redhat Cman 2.20080629/2.20080801
The pserver_shutdown function in fence_egenera in cman 2.20080629 and 2.20080801 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/eglog temporary file.
local
redhat CWE-59
6.9