PT-2001-2025 · Red Hat · Red Hat
Published
2001-12-06
·
Updated
2017-10-10
·
CVE-2001-0859
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Red Hat Linux 7.1 kernel versions 2.4.3-12
Description
The issue concerns the default umask setting for init in the Red Hat Linux 7.1 Korean installation program, which is set to 000. This results in the installation of files with world-writeable permissions.
Recommendations
For kernel version 2.4.3-12, consider changing the default umask setting for init to a more secure value to prevent the installation of files with world-writeable permissions.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Red Hat