Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200606-02
https://security.gentoo.org/
Severity: Normal
Title: shadow: Privilege escalation
Date: June 07, 2006
Bugs: #133615
ID: 200606-02
Synopsis
=======
A security issue in shadow allows a local user to perform certain
actions with escalated privileges.
Background
=========
shadow provides a set of utilities to deal with user accounts.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 sys-apps/shadow < 4.0.15-r2 >= 4.0.15-r2
==========
When the mailbox is created in useradd, the "open()" function does not
receive the three arguments it expects while O_CREAT is present, which
leads to random permissions on the created file,...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.