CVE-2009-5023

Source
https://cve.org/CVERecord?id=CVE-2009-5023
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2009-5023.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2009-5023
Downstream
Related
Withdrawn
2026-01-27T04:10:06Z
Published
2014-06-10T14:55:08Z
Modified
2026-01-27T04:10:06Z
Summary
[none]
Details

The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8.5 allows local users to write to arbitrary files via a symlink attack on temporary files with predictable names, as demonstrated by /tmp/fail2ban-mail.txt.

References

Affected packages