pkgadd in Sun Solaris 10 before 20060825 installs files with insecure file and directory permissions (755 or 777) if the pkgmap file contains a "?" (question mark) in the mode field, which allows local users to modify arbitrary files or directories, a different vulnerability than CVE-2002-1871.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-967-1 | New elog packages fix arbitrary code execution |
EUVD |
EUVD-2006-4427 | pkgadd in Sun Solaris 10 before 20060825 installs files with insecure file and directory permissions (755 or 777) if the pkgmap file contains a "?" (question mark) in the mode field, which allows local users to modify arbitrary files or directories, a different vulnerability than CVE-2002-1871. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T19:06:07.668Z
Reserved: 2006-08-29T00:00:00
Link: CVE-2006-4439
No data.
Status : Deferred
Published: 2006-08-29T23:04:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-4439
No data.
OpenCVE Enrichment
No data.
Debian DSA
EUVD