Vulnerability Description
Untrusted search path vulnerability in Beagle 0.2.2.1 might allow local users to gain privileges via a malicious beagle-info program in the current working directory, or possibly directories specified in the PATH.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Beagle-Project | Beagle | 0.2.2.1 |
References
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=357392
- http://secunia.com/advisories/19278Vendor Advisory
- http://secunia.com/advisories/19336
- http://www.osvdb.org/23942
- http://www.redhat.com/archives/fedora-announce-list/2006-March/msg00047.html
- http://www.securityfocus.com/bid/17195
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25303
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=357392
- http://secunia.com/advisories/19278Vendor Advisory
- http://secunia.com/advisories/19336
- http://www.osvdb.org/23942
- http://www.redhat.com/archives/fedora-announce-list/2006-March/msg00047.html
- http://www.securityfocus.com/bid/17195
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25303
FAQ
What is CVE-2006-1296?
CVE-2006-1296 is a vulnerability with a CVSS score of 7.5 (HIGH). Untrusted search path vulnerability in Beagle 0.2.2.1 might allow local users to gain privileges via a malicious beagle-info program in the current working directory, or possibly directories specified...
How severe is CVE-2006-1296?
CVE-2006-1296 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-1296?
Check the references section above for vendor advisories and patch information. Affected products include: Beagle-Project Beagle.