Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2006-4842

29
FAUCET Score

CVE-2006-4842 describes a local privilege escalation vulnerability in Netscape Portable Runtime (NSPR) API versions 4.6.1 and 4.6.2, specifically as used in Sun Solaris 10. The vulnerability arises from the NSPR API trusting user-specified environment variables for log file paths even when running setuid programs, allowing local users to create or overwrite arbitrary files. This vulnerability has a CVSS score of 3.6 (AV:L/AC:L/Au:N/C:N/I:P/A:P), indicating a low attack complexity and requiring local access, but it can lead to partial integrity and availability impacts. Its FAUCET Risk Score is high at 92/100, despite a low EPSS score, suggesting a significant potential risk. Exploitation is confirmed with multiple public exploit codes available, including a Metasploit module and several ExploitDB entries demonstrating arbitrary file creation and privilege escalation. While not on the KEV catalog or Hot List, the existence of readily available exploits indicates a practical threat, though there is no evidence of active exploitation or significant community discussion.

Impacted Technologies

VendorProductVersion(s)CPE
4.6.1CPE matchmatch criteria
cpe:2.3:a:netscape:portable_runtime_api:4.6.1:*:*:*:*:*:*:*
4.6.2CPE matchmatch criteria
cpe:2.3:a:netscape:portable_runtime_api:4.6.2:*:*:*:*:*:*:*
10.0CPE matchmatch criteria
cpe:2.3:o:sun:solaris:10.0:*:sparc:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

3.6LOW

AV:L/AC:L/Au:N/C:N/I:P/A:P

Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
Access Vector
LOCAL
Access Complexity
LOW
Authentication
NONE
Exploitability Score
3.9
Impact Score
4.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
7.60%
Probability of exploitation in next 30 days
EPSS Percentile
93.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
Metasploit: Solaris libnspr NSPR_LOG_FILE Privilege Escalation · Oct 11, 2006
ExploitDB: EDB-45433 · Sep 18, 2018
This CVE's current EPSS score of 0.0760 is in the 100th percentile among its peer group of 2,096 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2006-4842Important

nspr: setuid root programs linked with NSPR allow elevation of privilege

Sep 5, 2006

References

labs.idefense.com / intelligence/vulnerabilities/display.php
Vendor Advisory
secunia.com / advisories/22348
Vendor Advisory
securitytracker.com / id
exchange.xforce.ibmcloud.com / vulnerabilities/29489
oval.cisecurity.org / repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1819
sunsolve.sun.com / search/document.do
exploit-db.com / exploits/45433
securityfocus.com / archive/1/448691/100/0/threaded
securityfocus.com / bid/20471
vupen.com / english/advisories/2006/4016
Vendor Advisory