The Fan-Out Linux and UNIX receiver scripts in Novell Identity Manager (IDM) 3.0.1 allows local users to execute arbitrary commands via unspecified vectors involving certain environment variables and "code injection."
References
Link | Resource |
---|---|
http://secunia.com/advisories/21888 | Vendor Advisory |
http://securitytracker.com/id?1016853 | Third Party Advisory VDB Entry |
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2974421.htm | Patch |
http://www.securityfocus.com/bid/20016 | Patch Third Party Advisory VDB Entry |
http://www.vupen.com/english/advisories/2006/3607 | Third Party Advisory |
http://secunia.com/advisories/21888 | Vendor Advisory |
http://securitytracker.com/id?1016853 | Third Party Advisory VDB Entry |
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2974421.htm | Patch |
http://www.securityfocus.com/bid/20016 | Patch Third Party Advisory VDB Entry |
http://www.vupen.com/english/advisories/2006/3607 | Third Party Advisory |
Configurations
History
21 Nov 2024, 00:16
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/21888 - Vendor Advisory | |
References | () http://securitytracker.com/id?1016853 - Third Party Advisory, VDB Entry | |
References | () http://support.novell.com/cgi-bin/search/searchtid.cgi?/2974421.htm - Patch | |
References | () http://www.securityfocus.com/bid/20016 - Patch, Third Party Advisory, VDB Entry | |
References | () http://www.vupen.com/english/advisories/2006/3607 - Third Party Advisory |
Information
Published : 2006-09-14 22:07
Updated : 2024-11-21 00:16
NVD link : CVE-2006-4803
Mitre link : CVE-2006-4803
CVE.ORG link : CVE-2006-4803
JSON object : View
Products Affected
netiq
- identity_manager
CWE