DEBIAN-CVE-2006-7191

Source
https://security-tracker.debian.org/tracker/CVE-2006-7191
Import Source
https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2006-7191.json
JSON Data
https://api.test.osv.dev/v1/vulns/DEBIAN-CVE-2006-7191
Upstream
Published
2007-04-03T00:19:00Z
Modified
2025-11-14T03:04:00.202054Z
Summary
[none]
Details

Untrusted search path vulnerability in lamdaemon.pl in LDAP Account Manager (LAM) before 1.0.0 allows local users to gain privileges via a modified PATH that points to a malicious rm program.

References

Affected packages

Debian:11 / ldap-account-manager

Package

Name
ldap-account-manager
Purl
pkg:deb/debian/ldap-account-manager?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-1

Ecosystem specific

{
    "urgency": "medium"
}

Database specific

source

"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2006-7191.json"

Debian:12 / ldap-account-manager

Package

Name
ldap-account-manager
Purl
pkg:deb/debian/ldap-account-manager?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-1

Ecosystem specific

{
    "urgency": "medium"
}

Database specific

source

"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2006-7191.json"

Debian:13 / ldap-account-manager

Package

Name
ldap-account-manager
Purl
pkg:deb/debian/ldap-account-manager?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-1

Ecosystem specific

{
    "urgency": "medium"
}

Database specific

source

"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2006-7191.json"

Debian:14 / ldap-account-manager

Package

Name
ldap-account-manager
Purl
pkg:deb/debian/ldap-account-manager?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-1

Ecosystem specific

{
    "urgency": "medium"
}

Database specific

source

"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2006-7191.json"