VYPR
Unrated severityNVD Advisory· Published Oct 10, 2006· Updated Jun 16, 2026

CVE-2006-5214

CVE-2006-5214

Description

Race condition in the Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 20060225, and Solaris 8 through 10 before 20061006, causes a user's Xsession errors file to have weak permissions before a chmod is performed, which allows local users to read Xsession errors files of other users.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • NetBSD/NetBSD3 versions
    cpe:2.3:o:netbsd:netbsd:3.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:netbsd:netbsd:3.0:*:*:*:*:*:*:*
    • cpe:2.3:o:netbsd:netbsd:3.99.15:*:*:*:*:*:*:*
    • (no CPE)range: <20060212
  • cpe:2.3:o:sun:solaris:10.0:*:sparc:*:*:*:*:*+ 2 more
    • cpe:2.3:o:sun:solaris:10.0:*:sparc:*:*:*:*:*
    • cpe:2.3:o:sun:solaris:9.0:*:sparc:*:*:*:*:*
    • (no CPE)range: 8 <= version <= 10, <20061006
  • cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*
  • Xorg/X.orgllm-create
    Range: <20060225

Patches

Vulnerability mechanics

References

13

News mentions

0

No linked articles in our index yet.