Vulnerability Name: | CVE-2006-1174 (CCN-26958) | ||||||||||||||||
Assigned: | 2005-02-23 | ||||||||||||||||
Published: | 2005-02-23 | ||||||||||||||||
Updated: | 2020-08-11 | ||||||||||||||||
Summary: | useradd in shadow-utils before 4.0.3, and possibly other versions before 4.0.8, does not provide a required argument to the open function when creating a new user mailbox, which causes the mailbox to be created with unpredictable permissions and possibly allows attackers to read or modify the mailbox. | ||||||||||||||||
CVSS v3 Severity: | 4.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||
CVSS v2 Severity: | 3.7 Low (CVSS v2 Vector: AV:L/AC:H/Au:N/C:P/I:P/A:P) 2.7 Low (Temporal CVSS v2 Vector: AV:L/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
2.7 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||
Vulnerability Type: | CWE-264 | ||||||||||||||||
Vulnerability Consequences: | Obtain Information | ||||||||||||||||
References: | Source: SGI Type: UNKNOWN 20070602-01-P Source: CCN Type: Full-Disclosure Mailing List, Wed Sep 19 2007 - 21:15:23 CDT VMSA-2007-0006 Critical security updates for all supported versions of VMware ESX Server, VMware Server, VMware Workstation, VMware ACE, and VMware Player Source: MITRE Type: CNA CVE-2006-1174 Source: CONFIRM Type: UNKNOWN http://cvs.pld.org.pl/shadow/NEWS?rev=1.109 Source: CCN Type: Shaow-utils CVS Repository Shaow-utils CVS Repository Source: FULLDISC Type: UNKNOWN 20070920 VMSA-2007-0006 Critical security updates for all supported versions of VMware ESX Server, VMware Server, VMware Workstation, VMware ACE, and VMware Player Source: CCN Type: VMware Security-announce Mailing list, Wed Sep 19 19:15:23 PDT 2007 VMSA-2007-0006 Critical security updates for all supported versions of VMware ESX Server, VMware Server, VMware Workstation, VMware ACE, and VMware Player Source: CCN Type: RHSA-2007-0276 Low: shadow-utils security and bug fix update Source: CCN Type: RHSA-2007-0431 Low: shadow-utils security and bug fix update Source: CCN Type: SA20370 Shadow "useradd.c" Insecure Mailbox File Permissions Source: SECUNIA Type: Patch, Vendor Advisory 20370 Source: SECUNIA Type: Vendor Advisory 20506 Source: SECUNIA Type: Vendor Advisory 25098 Source: SECUNIA Type: Vendor Advisory 25267 Source: SECUNIA Type: Vendor Advisory 25629 Source: SECUNIA Type: Vendor Advisory 25894 Source: CCN Type: SA25896 Avaya Products Shadow "useradd.c" Insecure Mailbox File Permissions Source: SECUNIA Type: Vendor Advisory 25896 Source: CCN Type: SA26909 VMware ESX Server Multiple Security Updates Source: SECUNIA Type: Vendor Advisory 26909 Source: SECUNIA Type: Vendor Advisory 27706 Source: CCN Type: SECTRACK ID: 1018221 shadow-utils `useradd` Unsafe Mailbox Folder Permissions May Let Local Users Read/Write Mail Source: CONFIRM Type: UNKNOWN http://support.avaya.com/elmodocs2/security/ASA-2007-249.htm Source: CCN Type: ASA-2007-249 shadow-utils security and bug fix update (RHSA-2007-0276) Source: CCN Type: ASA-2007-326 shadow-utils security and bug fix update (RHSA-2007-0431) Source: CCN Type: GLSA-200606-02 shadow: Privilege escalation Source: GENTOO Type: UNKNOWN GLSA-200606-02 Source: CCN Type: US-CERT VU#312692 Shadow Utils useradd utility sets incorrect file permissions Source: CERT-VN Type: US Government Resource VU#312692 Source: MANDRIVA Type: UNKNOWN MDKSA-2006:090 Source: REDHAT Type: UNKNOWN RHSA-2007:0276 Source: REDHAT Type: UNKNOWN RHSA-2007:0431 Source: BUGTRAQ Type: UNKNOWN 20070511 rPSA-2007-0096-1 shadow Source: BID Type: Patch 18111 Source: CCN Type: BID-18111 Shadow-Utils 'useradd' Local Insecure Permissions Vulnerability Source: SECTRACK Type: UNKNOWN 1018221 Source: CCN Type: VMware, Inc. Web site Download Patch ESX-1001726 for VMware ESX Server 3.0.2 Source: VUPEN Type: Vendor Advisory ADV-2006-2006 Source: VUPEN Type: Vendor Advisory ADV-2007-3229 Source: XF Type: UNKNOWN shadow-utils-useradd-file-permission(26958) Source: XF Type: UNKNOWN shadow-utils-useradd-file-permission(26958) Source: CONFIRM Type: UNKNOWN https://issues.rpath.com/browse/RPL-1357 Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:10807 | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration RedHat 4: Configuration RedHat 5: ![]() | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |