CVE-2005-0580

cmd5checkpw, when running setuid, does not properly drop privileges before calling the execvp function, which allows local users to read the poppasswd file.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:krzysztof_dabrowski:cmd5checkpw:0.21:*:*:*:*:*:*:*
cpe:2.3:a:krzysztof_dabrowski:cmd5checkpw:0.20:*:*:*:*:*:*:*
cpe:2.3:a:krzysztof_dabrowski:cmd5checkpw:0.22:*:*:*:*:*:*:*

Information

Published : 2005-02-24 21:00

Updated : 2008-09-05 13:46


NVD link : CVE-2005-0580

Mitre link : CVE-2005-0580


JSON object : View

Advertisement

dedicated server usa

Products Affected

krzysztof_dabrowski

  • cmd5checkpw