Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2006-0071
HistoryJan 04, 2006 - 12:03 a.m.

CVE-2006-0071

2006-01-0400:03:00
Debian Security Bug Tracker
security-tracker.debian.org
11

CVSS2

6.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:C/I:C/A:N

EPSS

0

Percentile

5.1%

The ebuild for pinentry before 0.7.2-r2 on Gentoo Linux sets setgid bits for pinentry programs, which allows local users to read or overwrite arbitrary files as gid 0.

CVSS2

6.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:C/I:C/A:N

EPSS

0

Percentile

5.1%

Related for DEBIANCVE:CVE-2006-0071