CVE-2005-1379: Medium severity Mandrakesoft Mandrake Lam-runtime vulnerability
Published May 2, 2005
·Updated
The LAM runtime environment package (lam-runtime-7.0.6-2mdk) on Mandrake Linux installs the mpi user without a password, which allows local users to gain privileges.
Affected Software
1 affected component
Mandrakesoft Mandrake Lam-runtime=7.0.6.2mdk
Event History
May 2, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1379?
CVE-2005-1379 is considered a high-severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2005-1379?
To fix CVE-2005-1379, ensure that the mpi user created by the lam-runtime package is secured with a password or remove the mpi user if it is not required.
3
Who is affected by CVE-2005-1379?
Users of the Mandrake Linux version with the lam-runtime package version 7.0.6-2mdk are affected by CVE-2005-1379.
4
What kind of attack can exploit CVE-2005-1379?
CVE-2005-1379 can be exploited by local users to gain elevated privileges on the system.
5
Is there an update available for CVE-2005-1379?
You should check for security updates or patches from Mandrake Linux that address CVE-2005-1379.