First published: Thu Jun 01 2006(Updated: )
The RedCarpet /etc/ximian/rcd.conf configuration file in Novell Linux Desktop 9 and SUSE SLES 9 has world-readable permissions, which allows attackers to obtain the rc (RedCarpet) password.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SUSE Linux | =9.0 | |
SUSE Linux | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-2752 has a medium severity level due to the potential exposure of sensitive information.
To fix CVE-2006-2752, change the permissions of the /etc/ximian/rcd.conf file to restrict access from world-readable to limited users.
The consequences of CVE-2006-2752 include unauthorized access to the RedCarpet configuration and potential exploitation of the rc password.
CVE-2006-2752 affects Novell Linux Desktop 9 and SUSE SLES 9 systems.
You can determine if your system is vulnerable to CVE-2006-2752 by checking the permissions of the /etc/ximian/rcd.conf file.