Lucene search

K
cveMitreCVE-2006-0126
HistoryJan 09, 2006 - 11:03 a.m.

CVE-2006-0126

2006-01-0911:03:00
mitre
web.nvd.nist.gov
20
cve-2006-0126
rxvt-unicode
security vulnerability
local access
tty devices

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0

Percentile

5.1%

rxvt-unicode before 6.3, on certain platforms that use openpty and non-Unix pty devices such as Linux and most BSD platforms, does not maintain the intended permissions of tty devices, which allows local users to gain read and write access to the devices.

Affected configurations

Nvd
Node
rxvt-unicoderxvt-unicodeRange6.2
VendorProductVersionCPE
rxvt-unicoderxvt-unicode*cpe:2.3:a:rxvt-unicode:rxvt-unicode:*:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0

Percentile

5.1%