CVE-2006-1280

Publication date 19 March 2006

Last updated 24 July 2024


Ubuntu priority

CGI::Session 4.03-1 does not set proper permissions on temporary files created in (1) Driver::File and (2) Driver::db_file, which allows local users to obtain privileged information, such as session keys, by viewing the files.

Status

Package Ubuntu Release Status
libcgi-session-perl 7.04 feisty
Fixed 4.13-1
6.10 edgy
Fixed 4.13-1
6.06 LTS dapper
Fixed 4.13-1