The bootloader configuration module (pyanaconda/bootloader.py) in Anaconda uses 755 permissions for /etc/grub.d, which allows local users to obtain password hashes and conduct brute force password guessing attacks.
References
Configurations
Information
Published : 2012-07-03 15:55
Updated : 2012-08-13 20:37
NVD link : CVE-2012-2314
Mitre link : CVE-2012-2314
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
fedoraproject
- anaconda