You are here

CVE-2009-0788

Vincent (CVE) Danen's picture
Red Hat Network (RHN) Satellite Server 5.3 and 5.4 does not properly rewrite unspecified URLs, which allows remote attackers to (1) obtain unspecified sensitive host information or (2) use the server as an inadvertent proxy to connect to arbitrary services and IP addresses via unspecified vectors.

Details Source

Mitre

Public Date

2011-04-11 00:00:00

Impact

Moderate

Bugzilla

CVE-2009-0788 rhn_satellite: Incorrect mod_rewrite rules (information disclosure, abuse as distributed DoS tool)

Bugzilla ID

491 365

CVSS Status

verified

Base Score

3.30

Base Metrics

AV:A/AC:L/Au:N/C:P/I:N/A:N

Red Hat Security Errata

Platform Errata Release Date
Red Hat Satellite 5.4 (RHEL v.5) RHSA-2011:0434 2011-04-11
Red Hat Satellite 5.3 (RHEL v.5) RHSA-2011:0434 2011-04-11
Red Hat Satellite 5.3 (RHEL v.4) RHSA-2011:0434 2011-04-11

Affected Packages State

Platform Package State
Red Hat Satellite 5.2 Server Affected
Red Hat Satellite 5.1 Server Affected