The Ubuntu 5.10 installer does not properly clear passwords from the installer log file (questions.dat), and leaves the log file with world-readable permissions, which allows local users to gain privileges.
References
Configurations
Information
Published : 2006-03-13 04:18
Updated : 2018-10-03 14:36
NVD link : CVE-2006-1183
Mitre link : CVE-2006-1183
JSON object : View
CWE
Products Affected
ubuntu
- ubuntu_linux