tin 1.40 creates the .tin directory with insecure permissions, which allows local users to read passwords from the .inputhistory file.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=94286179032648&w=2 |
Configurations
Information
Published : 1999-11-16 21:00
Updated : 2016-10-17 19:01
NVD link : CVE-1999-1092
Mitre link : CVE-1999-1092
JSON object : View
CWE
Products Affected
iain_lea
- tin