The PPP wvdial.lxdialog script in wvdial 1.4 and earlier creates a .config file with world readable permissions, which allows a local attacker in the dialout group to access login and password information.
References
Configurations
Information
Published : 1999-12-13 21:00
Updated : 2008-09-10 12:04
NVD link : CVE-2000-0361
Mitre link : CVE-2000-0361
JSON object : View
CWE
Products Affected
suse
- suse_linux