CVE-2003-1417 Information

Description

nCipher Support Software 6.00 when using generatekey KeySafe to import keys does not delete the temporary copies of the key which may allow local users to gain access to the key by reading the (1) key.pem or (2) key.der files.

Reference

http://marc.info/?l=bugtraq&m=104619088801750&w=2 http://www.ncipher.com/support/advisories/advisory7_keyduplicates.html http://www.securityfocus.com/bid/6927 https://exchange.xforce.ibmcloud.com/vulnerabilities/11422

Share on: