CVE-2006-1376
EPSS 0.05%
Description
The installation of Debian GNU/Linux 3.1r1 from the network install CD creates /var/log/debian-installer/cdebconf with world writable permissions, which allows local users to cause a denial of service (disk consumption).
How to fix CVE-2006-1376
To remediate CVE-2006-1376, upgrade the affected package to a fixed version below.
- Debian/shadow—upgrade to 1:4.0.14-9 or later
Is CVE-2006-1376 being exploited?
Low — EPSS is 0.0%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 1:4.0.14-9