Loading vulnerability details…
CVSS v3.1
N/A
EPSS
0.38%
Published
Nov 15, 2014
Modified
May 6, 2026
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The ldns-keygen tool in ldns 1.6.x uses the current umask to set the privileges of the private key, which might allow local users to obtain the private key by reading the file.
Weaknesses (CWE)
Affected Products (12)
References (10)