OSVDB ID: 3796

Title: Red Hat util-linux Login Program Information Leakage

Info

Disclosure

Feb 03, 2004

Discovery

Jan 19, 2004

Dates

Exploit

Unknown

Solution

Unknown

Description

Red Hat Linux contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when by a flaw in the login program, which can disclose information in freed memory resulting in a loss of confidentiality.

Classification

Location: Local Access Required
Attack Type: Information Disclosure
Impact: Loss of Confidentiality
Exploit: Exploit Unknown
Disclosure: OSVDB Verified

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Red Hat has released a patch to address this vulnerability.

Products

Red Hat, Inc.

Advanced Workstation for Itanium

2.1

Enterprise Linux AS

2.1

Enterprise Linux ES

2.1

Enterprise Linux WS

2.1

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/3796