Lucene search

K
ubuntucveUbuntu.comUB:CVE-2006-0151
HistoryJan 09, 2006 - 12:00 a.m.

CVE-2006-0151

2006-01-0900:00:00
ubuntu.com
ubuntu.com
12

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.001

Percentile

28.0%

sudo 1.6.8 and other versions does not clear the PYTHONINSPECT environment
variable, which allows limited local users to gain privileges via a Python
script, a variant of CVE-2005-4158.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchsudo< 1.6.8p12-1ubuntu6UNKNOWN
ubuntu6.10noarchsudo< 1.6.8p12-1ubuntu6UNKNOWN
ubuntu7.04noarchsudo< 1.6.8p12-1ubuntu6UNKNOWN

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.001

Percentile

28.0%