VYPR
Unrated severityNVD Advisory· Published May 11, 2009· Updated Apr 23, 2026

CVE-2009-1601

CVE-2009-1601

Description

The Ubuntu clamav-milter.init script in clamav-milter before 0.95.1+dfsg-1ubuntu1.2 in Ubuntu 9.04 sets the ownership of the current working directory to the clamav account, which might allow local users to bypass intended access restrictions via read or write operations involving this directory.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

The clamav-milter init script in Ubuntu 9.04 changes ownership of the current working directory to the clamav user, allowing local privilege escalation.

Vulnerability

The clamav-milter init script in Ubuntu 9.04 (package version 0.95.1+dfsg-1ubuntu1.1 and earlier) changes the ownership of the current working directory to the clamav user during startup. This occurs because the script does not properly handle directory ownership, and when run from a directory such as /, it sets that directory's owner to clamav. The affected package is clamav-milter before 0.95.1+dfsg-1ubuntu1.2 [1][2].

Exploitation

An attacker with local access can exploit this by waiting for the clamav-milter service to start (e.g., during package installation or system boot). The init script runs with root privileges and changes the ownership of the current working directory to the clamav user. If the current directory is a system directory like /, the attacker can then read or write files in that directory as the clamav user, potentially bypassing intended access controls. No authentication beyond local access is required [1][2].

Impact

Successful exploitation allows a local attacker to gain read and write access to directories that were previously owned by root, such as /. This can lead to unauthorized modification of system files, disruption of services (e.g., breaking SSH chroot environments), and potential privilege escalation if the attacker can leverage the clamav user's access to further compromise the system [1][2].

Mitigation

The fix is included in clamav-milter version 0.95.1+dfsg-1ubuntu1.2 for Ubuntu 9.04, released on 4 May 2009 [1]. Users should update to this version. Additionally, administrators can run sudo find -H / -type d -user clamav ! -group clamav 2>/dev/null to identify any directories with incorrect ownership and manually correct them [1]. No workaround is provided for unpatched systems other than updating.

AI Insight generated on May 24, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.