CVE-2005-3629: High severity redhat Enterprise Linux vulnerability
initscripts in Red Hat Enterprise Linux 4 does not properly handle certain environment variables when /sbin/service is executed, which allows local users with sudo permissions for /sbin/service to gain root privileges via unknown vectors.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3629?
CVE-2005-3629 is considered a high severity vulnerability as it allows local users to gain root privileges.
How do I fix CVE-2005-3629?
To fix CVE-2005-3629, ensure that your Red Hat Enterprise Linux system is updated with the latest patches that address this vulnerability.
Who is affected by CVE-2005-3629?
CVE-2005-3629 affects users of Red Hat Enterprise Linux versions 3.0 and 4.0 with sudo permissions for the /sbin/service command.
Can CVE-2005-3629 be exploited remotely?
CVE-2005-3629 requires local access to the system, so it cannot be exploited remotely.
What are the potential consequences of CVE-2005-3629?
If exploited, CVE-2005-3629 can allow an attacker to execute arbitrary commands with root privileges, compromising system security.