CVE-2016-4455
published 2017-04-14CVE-2016-4455: The Subscription Manager package (aka subscription-manager) before 1.17.7-1 for Candlepin uses weak permissions (755) for subscription-manager cache…
PriorityP48low3.3CVSS 3.1
AVLACLPRLUINSUCLINAN
EPSS
0.43%
34.5th percentile
The Subscription Manager package (aka subscription-manager) before 1.17.7-1 for Candlepin uses weak permissions (755) for subscription-manager cache directories, which allows local users to obtain sensitive information by reading files in the directories.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_hpc_node | — | — |
| redhat | enterprise_linux_hpc_node | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
| redhat | enterprise_linux_workstation | — | — |
| redhat | subscription-manager | <= 1.17.6-1 | — |
CVSS provenance
nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
subscription-manager: sensitive world readable files in /var/lib/rhsm/
vendor_redhat·2016-05-25·CVSS 3.3
CVE-2016-4455 [LOW] CWE-732 subscription-manager: sensitive world readable files in /var/lib/rhsm/
subscription-manager: sensitive world readable files in /var/lib/rhsm/
The Subscription Manager package (aka subscription-manager) before 1.17.7-1 for Candlepin uses weak permissions (755) for subscription-manager cache directories, which allows local users to obtain sensitive information by reading files in the directories.
It was found that subscription-manager set weak permissions on files in /var/lib/rhsm/, causing an information disclosure. A local, unprivileged user could use this flaw to access sensitive data that could potentially be used in a social engineering attack.
Package: subscription-manager (Red Hat Enterprise Linux 5) - Will not fix
GHSA
GHSA-q3jw-m6vv-gg29: The Subscription Manager package (aka subscription-manager) before 1
ghsa_unreviewed·2022-05-13
CVE-2016-4455 [LOW] GHSA-q3jw-m6vv-gg29: The Subscription Manager package (aka subscription-manager) before 1
The Subscription Manager package (aka subscription-manager) before 1.17.7-1 for Candlepin uses weak permissions (755) for subscription-manager cache directories, which allows local users to obtain sensitive information by reading files in the directories.
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2016-2592.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0698.htmlhttp://www.openwall.com/lists/oss-security/2016/10/26/5http://www.securityfocus.com/bid/93926http://www.securitytracker.com/id/1038083https://bugzilla.redhat.com/show_bug.cgi?id=1340525https://github.com/candlepin/subscription-manager/blob/subscription-manager-1.17.7-1/subscription-manager.spechttps://github.com/candlepin/subscription-manager/commit/9dec31http://rhn.redhat.com/errata/RHSA-2016-2592.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0698.htmlhttp://www.openwall.com/lists/oss-security/2016/10/26/5http://www.securityfocus.com/bid/93926http://www.securitytracker.com/id/1038083https://bugzilla.redhat.com/show_bug.cgi?id=1340525https://github.com/candlepin/subscription-manager/blob/subscription-manager-1.17.7-1/subscription-manager.spechttps://github.com/candlepin/subscription-manager/commit/9dec31
2017-04-14
Published