Vulnerability Details CVE-2006-1587
NetBSD 1.6 up to 3.0, when a user has "set record" in .mailrc with the default umask set, creates the record file with 0644 permissions, which allows local users to read the record file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 25.3%
CVSS Severity
CVSS v2 Score 2.1
Products affected by CVE-2006-1587
-
cpe:2.3:o:netbsd:netbsd:1.6
-
cpe:2.3:o:netbsd:netbsd:1.6.1
-
cpe:2.3:o:netbsd:netbsd:1.6.2
-
cpe:2.3:o:netbsd:netbsd:2.0
-
cpe:2.3:o:netbsd:netbsd:2.0.1
-
cpe:2.3:o:netbsd:netbsd:2.0.2
-
cpe:2.3:o:netbsd:netbsd:2.0.3
-
cpe:2.3:o:netbsd:netbsd:2.1
-
cpe:2.3:o:netbsd:netbsd:3.0