Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cq7j-cjrf-2r4m

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass intended access restrictions and discover a shared secret via standard filesystem operations, a different vulnerability than CVE-2013-0258.

pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass intended access restrictions and discover a shared secret via standard filesystem operations, a different vulnerability than CVE-2013-0258.

EPSS

Процентиль: 7%
0.00026
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
почти 13 лет назад

pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass intended access restrictions and discover a shared secret via standard filesystem operations, a different vulnerability than CVE-2013-0258.

nvd
почти 13 лет назад

pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass intended access restrictions and discover a shared secret via standard filesystem operations, a different vulnerability than CVE-2013-0258.

debian
почти 13 лет назад

pam_google_authenticator.c in the PAM module in Google Authenticator b ...

EPSS

Процентиль: 7%
0.00026
Низкий

Дефекты

CWE-200