[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2017-8296 -- kedpm

ID: oval:org.secpod.oval:def:1900437Date: (C)2019-02-28   (M)2023-12-20
Class: VULNERABILITYFamily: unix




kedpm 0.5 and 1.0 creates a history file in ~/.kedpm/history that is written in cleartext. All of the commands performed in the password manager are written there. This can lead to the disclosure of the master password if the "password" command is used with an argument. The names of the password entries created and consulted are also accessible in cleartext.

Platform:
Ubuntu 16.04
Ubuntu 14.04
Product:
kedpm
Reference:
CVE-2017-8296
CVE    1
CVE-2017-8296
CPE    3
cpe:/a:kedpm:kedpm
cpe:/o:ubuntu:ubuntu_linux:16.04
cpe:/o:ubuntu:ubuntu_linux:14.04

© SecPod Technologies