Описание
aria2c in aria2 1.33.1, when --log is used, can store an HTTP Basic Authentication username and password in a file, which might allow local users to obtain sensitive information by reading this file.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needed |
| cosmic | released | 1.34.0-2ubuntu0.1 |
| devel | not-affected | 1.34.0-4 |
| disco | released | 1.34.0-3ubuntu0.1 |
| eoan | not-affected | 1.34.0-4 |
| esm-apps/bionic | released | 1.33.1-1ubuntu0.1~esm1 |
| esm-apps/focal | not-affected | 1.34.0-4 |
| esm-apps/jammy | not-affected | 1.34.0-4 |
| esm-apps/xenial | released | 1.19.0-1ubuntu0.1~esm1 |
| esm-infra-legacy/trusty | released | 1.18.1-1ubuntu0.1~esm1 |
Показывать по
EPSS
2.1 Low
CVSS2
7.8 High
CVSS3
Связанные уязвимости
aria2c in aria2 1.33.1, when --log is used, can store an HTTP Basic Authentication username and password in a file, which might allow local users to obtain sensitive information by reading this file.
aria2c in aria2 1.33.1, when --log is used, can store an HTTP Basic Au ...
aria2c in aria2 1.33.1, when --log is used, can store an HTTP Basic Authentication username and password in a file, which might allow local users to obtain sensitive information by reading this file.
EPSS
2.1 Low
CVSS2
7.8 High
CVSS3