heartbeat.c in heartbeat before 2.0.6 sets insecure permissions in a shmget call for shared memory, which allows local users to cause an unspecified denial of service via unknown vectors, possibly during a short time window on startup.
References
Configurations
History
No history.
Information
Published : 2006-07-25 13:22
Updated : 2011-10-17 04:00
NVD link : CVE-2006-3815
Mitre link : CVE-2006-3815
CVE.ORG link : CVE-2006-3815
JSON object : View
Products Affected
linux-ha
- heartbeat
CWE
CWE-264
Permissions, Privileges, and Access Controls