LOW · 1.7

CVE-2005-1976

Novell NetMail 3.5.2a, 3.5.2b, and 3.5.2c, when running on Linux, sets the owner and group ID to 500 for certain files, which could allow users or groups with that ID to execute arbitrary code or caus...

Vulnerability Description

Novell NetMail 3.5.2a, 3.5.2b, and 3.5.2c, when running on Linux, sets the owner and group ID to 500 for certain files, which could allow users or groups with that ID to execute arbitrary code or cause a denial of service by modifying those files.

CVSS Score

1.7

LOW

AV:L/AC:L/Au:S/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
NovellNetmail3.5.2

References

FAQ

What is CVE-2005-1976?

CVE-2005-1976 is a vulnerability with a CVSS score of 1.7 (LOW). Novell NetMail 3.5.2a, 3.5.2b, and 3.5.2c, when running on Linux, sets the owner and group ID to 500 for certain files, which could allow users or groups with that ID to execute arbitrary code or caus...

How severe is CVE-2005-1976?

CVE-2005-1976 has been rated LOW with a CVSS base score of 1.7/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-1976?

Check the references section above for vendor advisories and patch information. Affected products include: Novell Netmail.