The Standard security setting for Mandrake-Security package (msec) in Mandrake 8.2 installs home directories with world-readable permissions, which could allow local users to read other user's files.
References
Link | Resource |
---|---|
http://online.securityfocus.com/archive/1/277515 | Broken Link Third Party Advisory VDB Entry |
http://www.kb.cert.org/vuls/id/455323 | Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/5050 | Broken Link Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/9389 | Third Party Advisory VDB Entry |
Configurations
History
08 Feb 2024, 15:50
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 2.1
v3 : 5.5 |
CWE | CWE-276 | |
References | (BID) http://www.securityfocus.com/bid/5050 - Broken Link, Third Party Advisory, VDB Entry | |
References | (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/9389 - Third Party Advisory, VDB Entry | |
References | (BUGTRAQ) http://online.securityfocus.com/archive/1/277515 - Broken Link, Third Party Advisory, VDB Entry |
Information
Published : 2002-12-31 05:00
Updated : 2024-02-28 10:24
NVD link : CVE-2002-1713
Mitre link : CVE-2002-1713
CVE.ORG link : CVE-2002-1713
JSON object : View
Products Affected
mandrakesoft
- mandrake_linux
CWE
CWE-276
Incorrect Default Permissions