yocto ▾
›
scarthgap ▾
›
vulnerability
›
CVE-2010-4176
Component Overview
Vulnerability Overview
Name
CVE-2010-4176
Source
NVD (
link
)
Debian (
link
)
Description
plymouth-pretrigger.sh in dracut and udev, when running on Fedora 13 and 14, sets weak permissions for the /dev/systty device file, which allows remote authenticated users to read terminal data from tty0 for local users.
CWEs
CWE-276
Published Date
Dec 7, 2010
Updated Date
Jun 16, 2026
Workaround
-
Advisories
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/051755.html
Mailing List
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/051418.html
Mailing List
http://secunia.com/advisories/42342
Not Applicable
http://secunia.com/advisories/42451
Not Applicable
http://www.securityfocus.com/bid/45046
VDB Entry
http://www.vupen.com/english/advisories/2010/3062
Permissions Required
http://www.vupen.com/english/advisories/2010/3110
Permissions Required
https://bugzilla.redhat.com/show_bug.cgi?id=654489
Issue Tracking
https://bugzilla.redhat.com/show_bug.cgi?id=654935
Issue Tracking
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/051755.html
Mailing List
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/051418.html
Mailing List
http://secunia.com/advisories/42342
Not Applicable
http://secunia.com/advisories/42451
Not Applicable
http://www.securityfocus.com/bid/45046
VDB Entry
http://www.vupen.com/english/advisories/2010/3062
Permissions Required
http://www.vupen.com/english/advisories/2010/3110
Permissions Required
https://bugzilla.redhat.com/show_bug.cgi?id=654489
Issue Tracking
https://bugzilla.redhat.com/show_bug.cgi?id=654935
Issue Tracking
Analysis
#
Affected Component
Analysis
dracut
False Positive
Vulnerability Rating
#
4
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
dracut
yocto
kirkstone
056
Not Affected
dracut
yocto
master
111
False Positive