6.6
CVSSv2

CVE-2006-0071

Published: 04/01/2006 Updated: 05/09/2008
CVSS v2 Base Score: 6.6 | Impact Score: 9.2 | Exploitability Score: 3.9
VMScore: 587
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:N

Vulnerability Summary

The ebuild for pinentry prior to 0.7.2-r2 on Gentoo Linux sets setgid bits for pinentry programs, which allows local users to read or overwrite arbitrary files as gid 0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gentoo app-crypt pinentry 0.7.2

gentoo linux