PT-2006-7264 · Novell+1 · Open Enterprise Server+1
Published
2006-12-20
·
Updated
2008-09-05
·
CVE-2006-6662
CVSS v2.0
4.1
Medium
| Vector | AV:L/AC:M/Au:S/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
SUSE Linux Enterprise Desktop versions 10
Open Enterprise Server version 9
Description
The issue allows local users to log in to the console without a password under unspecified conditions.
Recommendations
For SUSE Linux Enterprise Desktop version 10, update to a version that includes a fix for this issue.
For Open Enterprise Server version 9, update to a version that includes a fix for this issue.
As a temporary workaround, consider restricting console access to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Open Enterprise Server
Suse Linux Enterprise Desktop