CVE-2005-0624 Information

Description

reportbug before 2.62 creates the .reportbugrc configuration file with world-readable permissions which allows local users to obtain email smarthost passwords.

Reference

http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=295407 http://marc.info/?l=bugtraq&m=110972153627388&w=2 http://secunia.com/advisories/14422/ https://bugzilla.ubuntu.com/show_bug.cgi?id=6600 https://exchange.xforce.ibmcloud.com/vulnerabilities/19504

Share on: