vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to be created with an unsafe umask that allows local users to read or modify the SSL key.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:13
Type | Values Removed | Values Added |
---|---|---|
References | () http://kb.vmware.com/kb/2467205 - | |
References | () http://secunia.com/advisories/21120 - Vendor Advisory | |
References | () http://secunia.com/advisories/23680 - | |
References | () http://securitytracker.com/id?1016536 - | |
References | () http://www.osvdb.org/27418 - | |
References | () http://www.securityfocus.com/archive/1/440583/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/441082/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/456546/100/200/threaded - | |
References | () http://www.securityfocus.com/bid/19060 - | |
References | () http://www.securityfocus.com/bid/19062 - | |
References | () http://www.vmware.com/support/esx2/doc/esx-202-200612-patch.html - | |
References | () http://www.vmware.com/support/esx21/doc/esx-213-200612-patch.html - | |
References | () http://www.vmware.com/support/esx25/doc/esx-253-200612-patch.html - | |
References | () http://www.vmware.com/support/esx25/doc/esx-254-200612-patch.html - | |
References | () http://www.vupen.com/english/advisories/2006/2880 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/27881 - |
Information
Published : 2006-07-21 14:03
Updated : 2024-11-21 00:13
NVD link : CVE-2006-3589
Mitre link : CVE-2006-3589
CVE.ORG link : CVE-2006-3589
JSON object : View
Products Affected
vmware
- infrastructure
- player
- server
- esx
- workstation
CWE