Name
CVE-2010-4176
Description
plymouth-pretrigger.sh in dracut and udev, when running on Fedora 13 and 14, sets weak permissions for the /dev/systty device file, which allows remote authenticated users to read terminal data from tty0 for local users.
CWEs
Published Date
Updated Date
Workaround
-
Advisories
http://secunia.com/advisories/42342Not Applicable
http://secunia.com/advisories/42451Not Applicable
http://www.vupen.com/english/advisories/2010/3062Permissions Required
http://www.vupen.com/english/advisories/2010/3110Permissions Required
https://bugzilla.redhat.com/show_bug.cgi?id=654489Issue Tracking
https://bugzilla.redhat.com/show_bug.cgi?id=654935Issue Tracking
http://secunia.com/advisories/42342Not Applicable
http://secunia.com/advisories/42451Not Applicable
http://www.vupen.com/english/advisories/2010/3062Permissions Required
http://www.vupen.com/english/advisories/2010/3110Permissions Required
https://bugzilla.redhat.com/show_bug.cgi?id=654489Issue Tracking
https://bugzilla.redhat.com/show_bug.cgi?id=654935Issue Tracking
Analysis#
Vulnerability Rating#
4
CVSSv2