First published: Thu Dec 08 2005(Updated: )
The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC configuration and conduct other attacks.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Qnx Qnx | =4.25 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4082 is considered a high severity vulnerability due to its potential for local users to exploit setuid permissions.
To fix CVE-2005-4082, remove the setuid bit from the dhcp.client program or apply updates from QNX that address this issue.
CVE-2005-4082 affects users of QNX version 4.25 where the dhcp.client program is setuid.
Due to CVE-2005-4082, local users can modify network interface configurations and potentially escalate privileges.
CVE-2005-4082 primarily impacts legacy systems running QNX 4.25 and is less of a concern in contemporary environments.