Vulnerability Details CVE-2006-3589
vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to be created with an unsafe umask that allows local users to read or modify the SSL key.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 34.0%
CVSS Severity
CVSS v2 Score 3.6
Products affected by CVE-2006-3589
-
cpe:2.3:a:vmware:infrastructure:3
-
cpe:2.3:a:vmware:player:-
-
cpe:2.3:a:vmware:player:1.0
-
cpe:2.3:a:vmware:player:1.0.0
-
cpe:2.3:a:vmware:player:1.0.1
-
cpe:2.3:a:vmware:player:1.0.2
-
cpe:2.3:a:vmware:player:1.0.3
-
cpe:2.3:a:vmware:player:1.0.4
-
cpe:2.3:a:vmware:player:1.0.5
-
cpe:2.3:a:vmware:player:1.0.5_build_56455
-
cpe:2.3:a:vmware:player:1.0.6
-
cpe:2.3:a:vmware:player:1.0.7
-
cpe:2.3:a:vmware:player:1.0.8
-
cpe:2.3:a:vmware:player:1.0.9
-
cpe:2.3:a:vmware:player:2.0
-
cpe:2.3:a:vmware:player:2.0.1
-
cpe:2.3:a:vmware:player:2.0.1_build_55017
-
cpe:2.3:a:vmware:player:2.0.2
-
cpe:2.3:a:vmware:player:2.0.3
-
cpe:2.3:a:vmware:player:2.0.4
-
cpe:2.3:a:vmware:player:2.0.5
-
cpe:2.3:a:vmware:player:2.5
-
cpe:2.3:a:vmware:player:2.5.1
-
cpe:2.3:a:vmware:player:2.5.2
-
cpe:2.3:a:vmware:player:2.5.3
-
cpe:2.3:a:vmware:player:2.5.4
-
cpe:2.3:a:vmware:player:2.5.5
-
cpe:2.3:a:vmware:player:3.0
-
cpe:2.3:a:vmware:player:3.0.1
-
cpe:2.3:a:vmware:player:3.1
-
cpe:2.3:a:vmware:player:3.1.0.12623
-
cpe:2.3:a:vmware:player:3.1.1
-
cpe:2.3:a:vmware:player:3.1.2
-
cpe:2.3:a:vmware:player:3.1.3
-
cpe:2.3:a:vmware:player:3.1.4
-
cpe:2.3:a:vmware:player:3.1.4.16648
-
cpe:2.3:a:vmware:player:3.1.5
-
cpe:2.3:a:vmware:player:3.1.6
-
cpe:2.3:a:vmware:player:4.0
-
cpe:2.3:a:vmware:player:4.0.0.18997
-
cpe:2.3:a:vmware:player:4.0.1
-
cpe:2.3:a:vmware:player:4.0.2
-
cpe:2.3:a:vmware:player:4.0.3
-
cpe:2.3:a:vmware:player:4.0.4
-
cpe:2.3:a:vmware:player:4.0.5
-
cpe:2.3:a:vmware:player:4.0.6
-
cpe:2.3:a:vmware:player:5.0
-
cpe:2.3:a:vmware:player:5.0.1
-
cpe:2.3:a:vmware:player:5.0.2
-
cpe:2.3:a:vmware:player:7.0
-
cpe:2.3:a:vmware:player:7.1
-
cpe:2.3:a:vmware:player:7.1.1
-
cpe:2.3:a:vmware:player:7.1.2
-
cpe:2.3:a:vmware:server:1.0.1_build_29996
-
cpe:2.3:a:vmware:workstation:5.5.3
-
-
cpe:2.3:o:vmware:esx:2.0.1
-
-
cpe:2.3:o:vmware:esx:2.1.1
-
cpe:2.3:o:vmware:esx:2.1.2
-
-
cpe:2.3:o:vmware:esx:2.5.2