CVE-2001-0378: Low severity OpenBSD OpenBSD vulnerability
Published Jun 27, 2001
·Updated
readline prior to 4.1, in OpenBSD 2.8 and earlier, creates history files with insecure permissions, which allows a local attacker to recover potentially sensitive information via readline history files.
Affected Software
1 affected component
OpenBSD OpenBSD<=2.8
Remediation
Event History
Jun 27, 2001
CVE Published
04:00 AM
Sep 18, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0378?
CVE-2001-0378 is considered a moderate severity vulnerability due to its potential to expose sensitive information.
2
How do I fix CVE-2001-0378?
To fix CVE-2001-0378, update to the readline version 4.1 or later, which corrects the insecure permissions.
3
Who is affected by CVE-2001-0378?
CVE-2001-0378 affects users of OpenBSD versions prior to 2.8 due to insecure permissions on history files.
4
What can a local attacker do with CVE-2001-0378?
A local attacker can recover sensitive information by accessing unsecured readline history files.
5
When was CVE-2001-0378 reported?
CVE-2001-0378 was reported in the year 2001.