VulnerabilityModified
CVE-2001-1322
xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an application that runs under xinetd but does not set its own safe umask.
LOW 3.6EPSS 0.36%
Does this matter?
Lower severity and a low EPSS score (0.36%). Track it; it rarely justifies an emergency change on its own.
Description
xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an application that runs under xinetd but does not set its own safe umask.
- CVSS 2.0
- 3.6 LOWAV:L/AC:L/Au:N/C:P/I:P/A:N
- EPSS
- 0.36% probability · 30th percentile
- CISA KEV
- Not listed
- Affected
- xinetd/xinetd
- Source
- cve@mitre.org
References
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000404
- http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-024-01
- http://www.debian.org/security/2001/dsa-063
- http://www.iss.net/security_center/static/6657.phpVendor Advisory
- http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-055.php3
- http://www.linuxsecurity.com/advisories/other_advisory-1469.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2001-075.html
- http://www.securityfocus.com/bid/2826
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000404
- http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-024-01
- http://www.debian.org/security/2001/dsa-063
- http://www.iss.net/security_center/static/6657.phpVendor Advisory
- http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-055.php3
- http://www.linuxsecurity.com/advisories/other_advisory-1469.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2001-075.html
- http://www.securityfocus.com/bid/2826
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.