CVE-2006-1376: Low severity debian debian linux vulnerability
Published Mar 24, 2006
·Updated
The installation of Debian GNU/Linux 3.1r1 from the network install CD creates /var/log/debian-installer/cdebconf with world writable permissions, which allows local users to cause a denial of service (disk consumption).
Affected Software
1 affected component
Debian Debian Linux=3.1-r1
Event History
Mar 24, 2006
CVE Published
02:02 AM
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1376?
CVE-2006-1376 is classified as a moderate severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2006-1376?
To fix CVE-2006-1376, change the permissions of the /var/log/debian-installer/cdebconf file to restrict access.
3
What are the consequences of CVE-2006-1376?
The consequences of CVE-2006-1376 include disk space consumption by local users, potentially leading to denial of service.
4
Which software is affected by CVE-2006-1376?
CVE-2006-1376 affects Debian GNU/Linux version 3.1r1.
5
Can CVE-2006-1376 be exploited remotely?
CVE-2006-1376 cannot be exploited remotely as it requires local user access to the affected system.