First published: Wed Jun 27 2001(Updated: )
readline prior to 4.1, in OpenBSD 2.8 and earlier, creates history files with insecure permissions, which allows a local attacker to recover potentially sensitive information via readline history files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenBSD | <=2.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0378 is considered a moderate severity vulnerability due to its potential to expose sensitive information.
To fix CVE-2001-0378, update to the readline version 4.1 or later, which corrects the insecure permissions.
CVE-2001-0378 affects users of OpenBSD versions prior to 2.8 due to insecure permissions on history files.
A local attacker can recover sensitive information by accessing unsecured readline history files.
CVE-2001-0378 was reported in the year 2001.