← Back

CVE-2006-3589

nvd nist
Published: Jul 21, 2006Modified: Apr 16, 2026

JSON object

Loading...
3.6
Vector
AV:L/AC:L/Au:N/C:P/I:P/A:N
Exploitability: 3.9 / Impact: 4.9
Source: NVD

Description

vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to be created with an unsafe umask that allows local users to read or modify the SSL key.

Affected (11)

5 products
Esx
Infrastructure
Player
Server
Workstation
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 2.0.1
Version 2.0
Version 2.1.1
Version 2.1.2
Version 2.1
Version 2.5.2
Version 2.5
Version 3
All versions
Version 1.0.1_build_29996
Version 5.5.3

References (32)

Source: cve@mitre.org
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.