CVE-2006-1174

Source
https://cve.org/CVERecord?id=CVE-2006-1174
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2006-1174.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2006-1174
Downstream
Published
2006-05-28T23:02:00Z
Modified
2026-04-10T03:37:26.034232Z
Summary
[none]
Details

useradd in shadow-utils before 4.0.3, and possibly other versions before 4.0.8, does not provide a required argument to the open function when creating a new user mailbox, which causes the mailbox to be created with unpredictable permissions and possibly allows attackers to read or modify the mailbox.

References

Affected packages