CVE-2006-0071

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/01/2006
Last modified:
03/04/2025

Description

The ebuild for pinentry before 0.7.2-r2 on Gentoo Linux sets setgid bits for pinentry programs, which allows local users to read or overwrite arbitrary files as gid 0.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gentoo:app-crypt_pinentry:0.7.2:*:*:*:*:*:*:*
cpe:2.3:a:gentoo:app-crypt_pinentry:0.7.2:r1:*:*:*:*:*:*
cpe:2.3:o:gentoo:linux:*:*:*:*:*:*:*:*