CVE-2006-6614

Loading...

General

Score:1.9/10.0
Severity:Low
Category:N/A
Exploit:Available

Impact Metrics

Confidentiality:Partial
Integrity:None
Availability:None

Exploitability Metrics

Access Vector:Local
Access Complexity:Medium
Authentication:None

Published on 18/12/06 - Updated on 29/07/17

Description

The save_log_local function in Fully Automatic Installation (FAI) 2.10.1, and possibly 3.1.2, when verbose mode is enabled, stores the root password hash in /var/log/fai/current/fai.log, whose file permissions allow it to be copied to other hosts when fai-savelog is called and allows attackers to obtain the hash.

Category:

There is insufficient information about the issue to classify it; details are unknown or unspecified.

Security Notices

US National Vulnerability DatabaseCVE-2006-6614

Exploits

SecurityFocusBID-21579

Relative technologies

VendorProduct
debiandebian_linux
thomas_langefully_automated_installation

Share this vulnerability with:

Twitter Facebook LinkedIn Mail