CVE-2006-0126

high

Description

rxvt-unicode before 6.3, on certain platforms that use openpty and non-Unix pty devices such as Linux and most BSD platforms, does not maintain the intended permissions of tty devices, which allows local users to gain read and write access to the devices.

References

http://www.vupen.com/english/advisories/2006/0052

http://www.osvdb.org/22223

http://secunia.com/advisories/18301

http://dist.schmorp.de/rxvt-unicode/Changes

Details

Source: Mitre, NVD

Published: 2006-01-09

Updated: 2026-04-16

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00046