CVE-2007-6283 describes a vulnerability in Red Hat Enterprise Linux 5 and Fedora where the /etc/rndc.key file is installed with world-readable permissions. This flaw allows local users to execute unauthorized named commands, potentially leading to a denial of service by stopping the named service. The vulnerability has a CVSS score of 4.9, indicating a low severity local attack with high impact on availability. There is no known exploit code available (Metasploit, Nuclei, ExploitDB), nor is it listed on the KEV catalog, suggesting it is not actively exploited and has received minimal community or media attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora_core:*:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:* | ||
5CPE matchmatch criteria | cpe:2.3:o:centos:centos:5:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:N/I:N/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.