CVE-2014-0241: Medium severity foreman hammer cli vulnerability
rubygem-hammercliforeman: File /etc/hammer/cli.modules.d/foreman.yml world readable
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0241?
The severity of CVE-2014-0241 is medium with a CVSS score of 5.5.
How does CVE-2014-0241 impact the affected software?
CVE-2014-0241 allows an attacker to read the world-readable file /etc/hammer/cli.modules.d/foreman.yml, leading to potential information disclosure.
How can I fix CVE-2014-0241?
To fix CVE-2014-0241, ensure that the file /etc/hammer/cli.modules.d/foreman.yml is not world-readable and restrict the file permissions accordingly.
What are the affected software versions for CVE-2014-0241?
Theforeman Hammer Cli and Redhat Satellite version 6.0 are affected by CVE-2014-0241.
Where can I find more information about CVE-2014-0241?
For more information about CVE-2014-0241, you can refer to the following references: - [Red Hat Security Advisory](https://access.redhat.com/security/cve/cve-2014-0241) - [CVE-2014-0241 Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-0241)