Описание
Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the command line, which allows local users to obtain sensitive information by listing the process and its arguments, related to "echoing."
Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the command line, which allows local users to obtain sensitive information by listing the process and its arguments, related to "echoing."
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2010-0119
- http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036697.html
- http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036701.html
- http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036764.html
- http://secunia.com/advisories/38723
- http://secunia.com/advisories/38814
- http://secunia.com/secunia_research/2010-7
- http://www.securityfocus.com/archive/1/509688/100/0/threaded
- http://www.securityfocus.com/bid/38352
Связанные уязвимости
Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the command line, which allows local users to obtain sensitive information by listing the process and its arguments, related to "echoing."
Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the command line, which allows local users to obtain sensitive information by listing the process and its arguments, related to "echoing."