First published: Wed Nov 08 2006(Updated: )
prl_dhcpd in Parallels Desktop for Mac Build 1940 uses insecure permissions (0666) for /Library/Parallels/.dhcpd_configuration, which allows local users to modify DHCP configuration.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Parallels Desktop | =build_1940 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5817 is considered a high severity vulnerability due to the potential for local users to modify DHCP configurations.
To fix CVE-2006-5817, change the permissions of /Library/Parallels/.dhcpd_configuration to prevent unauthorized access.
CVE-2006-5817 affects users of Parallels Desktop for Mac Build 1940.
The main cause of CVE-2006-5817 is the insecure file permissions (0666) on the DHCP configuration file.
Yes, CVE-2006-5817 could potentially lead to further attacks by allowing unauthorized users to alter network configurations.