Back to Database
Status published
Low
CVE-2001-0890
Certain backend drivers in the SANE library 1.0.3 and earlier,...
Vulnerability Description
Certain backend drivers in the SANE library 1.0.3 and earlier, as used in frontend software such as XSane, allows local users to modify files via a symlink attack on temporary files.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2001-0890
Credits & Attribution
No credits recorded in the NVD database.
References
More from sane
View All →CVE-2003-0778
saned in sane-backends 1.0.7 and earlier, and possibly later versions,...
Medium
5
CVE-2003-0777
saned in sane-backends 1.0.7 and earlier, when debug messages are...
Medium
5
CVE-2003-0776
saned in sane-backends 1.0.7 and earlier does not properly "check...
High
7.5
CVE-2003-0775
saned in sane-backends 1.0.7 and earlier calls malloc with an...
Medium
5
CVE-2003-0774
saned in sane-backends 1.0.7 and earlier does not quickly handle...
High
7.5
Affected Vendor
sane
View all reports →Affected Software
sane
Vulnerable Versions:
1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, 1.0.5, 1.0.6
Timeline
Official Publish:
July 23rd, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.