CVE-2007-5751 Information

Description

Liferea before 1.4.6 uses weak permissions (0644) for the feedlist.opml backup file which allows local users to obtain credentials.

Reference

http://osvdb.org/40649 http://secunia.com/advisories/27438 http://secunia.com/advisories/27491 http://sourceforge.net/project/shownotes.php?release_id=550468 http://www.securityfocus.com/bid/26254 https://bugzilla.redhat.com/show_bug.cgi?id=360641 https://exchange.xforce.ibmcloud.com/vulnerabilities/38156 https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00021.html

Share on: