lib/xymond_ipc.c in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 use weak permissions (666) for an unspecified IPC message queue, which allows local users to inject arbitrary messages by writing to that queue.
                
            References
                    Configurations
                    Configuration 1 (hide)
            
            
  | 
    
Configuration 2 (hide)
            
            
  | 
    
History
                    No history.
Information
                Published : 2016-04-13 16:59
Updated : 2018-10-09 19:59
NVD link : CVE-2016-2057
Mitre link : CVE-2016-2057
CVE.ORG link : CVE-2016-2057
JSON object : View
Products Affected
                debian
- debian_linux
 
xymon
- xymon
 
CWE
                
                    
                        
                        CWE-264
                        
            Permissions, Privileges, and Access Controls
