Beveiligingsadvies

CVE-2005-0580

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2005-02-27 05:00:00
Laatst bijgewerkt 2024-09-17 00:06:21
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

cmd5checkpw, when running setuid, does not properly drop privileges before calling the execvp function, which allows local users to read the poppasswd file.