CVE-2002-0849 Information

Description

Linux-iSCSI iSCSI implementation installs the iscsi.conf file with world-readable permissions on some operating systems including Red Hat Linux Limbo Beta 1 which could allow local users to gain privileges by reading the cleartext CHAP password.

Reference

http://marc.info/?l=bugtraq&m=102882056105806&w=2 http://marc.info/?l=bugtraq&m=102891036424424&w=2 http://www.iss.net/security_center/static/9792.php http://www.securityfocus.com/bid/5423

Share on: