First published: Mon Feb 28 2005(Updated: )
reportbug before 2.62 creates the .reportbugrc configuration file with world-readable permissions, which allows local users to obtain email smarthost passwords.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Debian Reportbug | =2.60 | |
Debian Reportbug | =2.61 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.