CVE-2006-1174

Publication date 28 May 2006

Last updated 24 July 2024


Ubuntu priority

useradd in shadow-utils before 4.0.3, and possibly other versions before 4.0.8, does not provide a required argument to the open function when creating a new user mailbox, which causes the mailbox to be created with unpredictable permissions and possibly allows attackers to read or modify the mailbox.

Status

Package Ubuntu Release Status
shadow 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected