CVE-2001-0378 Information

Description

readline prior to 4.1 in OpenBSD 2.8 and earlier creates history files with insecure permissions which allows a local attacker to recover potentially sensitive information via readline history files.

Reference

ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.8/common/024_readline.patch http://www.osvdb.org/5680 https://exchange.xforce.ibmcloud.com/vulnerabilities/6586

Share on: