Описание
A certain Debian patch for GNU GRUB uses world-readable permissions for grub.cfg, which allows local users to obtain password hashes, as demonstrated by reading the password_pbkdf2 directive in the file.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 2.00-20 |
| bionic | released | 2.00-20 |
| cosmic | released | 2.00-20 |
| devel | released | 2.00-20 |
| disco | released | 2.00-20 |
| eoan | released | 2.00-20 |
| esm-infra-legacy/trusty | released | 2.00-20 |
| esm-infra/bionic | released | 2.00-20 |
| esm-infra/focal | released | 2.00-20 |
| esm-infra/xenial | released | 2.00-20 |
Показывать по
EPSS
2.1 Low
CVSS2
Связанные уязвимости
A certain Debian patch for GNU GRUB uses world-readable permissions for grub.cfg, which allows local users to obtain password hashes, as demonstrated by reading the password_pbkdf2 directive in the file.
A certain Debian patch for GNU GRUB uses world-readable permissions fo ...
A certain Debian patch for GNU GRUB uses world-readable permissions for grub.cfg, which allows local users to obtain password hashes, as demonstrated by reading the password_pbkdf2 directive in the file.
EPSS
2.1 Low
CVSS2