VDB

RHSA-2005%3A823

RHSA-2005%3A823 PUBLISHED CVSS 6.900000095367432 MEDIUM

fetchmailconf before 1.49 in fetchmail 6.2.0, 6.2.5 and 6.2.5.2 creates configuration files with insecure world-readable permissions, which allows local users to obtain sensitive information such as passwords.

Risk Scores

CVSS 4.0
6.900000095367432
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Red HatRed Hat Enterprise Linux ES version 2.1
Red HatRed Hat Enterprise Linux WS version 2.1
Red HatRed Hat Linux Advanced Workstation 2.1
Red HatRed Hat Enterprise Linux AS (Advanced Server) version 2.1

Timeline

  • Oct 26, 2005 CVE Published
  • Nov 21, 2025 CVE Updated
  • Apr 24, 2026 Distribution Patch
  • Apr 24, 2026 Distribution Patch
  • Apr 24, 2026 Security Advisory
  • Aug 6, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›