CVE-2017-1000066: High severity keepass vulnerability
Published Jul 13, 2017
·Updated
The entry details view function in KeePass version 1.32 inadvertently decrypts certain database entries into memory, which may result in the disclosure of sensitive information.
Affected Software
1 affected component
KeePass KeePass=1.32
Event History
Jul 13, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-1000066?
CVE-2017-1000066 is classified as a medium severity vulnerability.
2
How does CVE-2017-1000066 affect KeePass users?
CVE-2017-1000066 allows for the inadvertent decryption of sensitive database entries in KeePass version 1.32.
3
How do I fix CVE-2017-1000066?
To mitigate CVE-2017-1000066, upgrade to a later version of KeePass that addresses this vulnerability.
4
What versions of KeePass are impacted by CVE-2017-1000066?
CVE-2017-1000066 affects KeePass version 1.32 exclusively.
5
What information is at risk due to CVE-2017-1000066?
CVE-2017-1000066 could lead to the disclosure of sensitive database entries stored in memory.