Описание
user_channel/passwd_mgr.cpp in OpenBMC phosphor-host-ipmid before 2020-04-03 does not ensure that /etc/ipmi-pass has strong file permissions.
Ссылки
- Third Party Advisory
- PatchThird Party Advisory
- Mailing ListThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2020-04-03 (исключая)
cpe:2.3:a:openbmc-project:openbmc:*:*:*:*:*:*:*:*
EPSS
Процентиль: 54%
0.00313
Низкий
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-276
Связанные уязвимости
github
больше 3 лет назад
user_channel/passwd_mgr.cpp in OpenBMC phosphor-host-ipmid before 2020-04-03 does not ensure that /etc/ipmi-pass has strong file permissions.
EPSS
Процентиль: 54%
0.00313
Низкий
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-276