Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-8378

Опубликовано: 10 апр. 2017
Источник: debian

Описание

In KeePassX before 0.4.4, a cleartext copy of password data is created upon a cancel of an XML export action. This allows context-dependent attackers to obtain sensitive information by reading the .xml dotfile.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
keepassxfixed0.4.3+dfsg-1package
keepassxfixed0.4.3+dfsg-0.1+deb8u1jessiepackage
keepassxno-dsawheezypackage
keepassxno-dsasqueezepackage

Примечания

  • https://www.openwall.com/lists/oss-security/2015/11/30/4

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 9 лет назад

In KeePassX before 0.4.4, a cleartext copy of password data is created upon a cancel of an XML export action. This allows context-dependent attackers to obtain sensitive information by reading the .xml dotfile.

CVSS3: 7.5
nvd
почти 9 лет назад

In KeePassX before 0.4.4, a cleartext copy of password data is created upon a cancel of an XML export action. This allows context-dependent attackers to obtain sensitive information by reading the .xml dotfile.

CVSS3: 7.5
github
больше 3 лет назад

In KeePassX before 0.4.4, a cleartext copy of password data is created upon a cancel of an XML export action. This allows context-dependent attackers to obtain sensitive information by reading the .xml dotfile.