hostapd 0.7.3, and possibly other versions before 1.0, uses 0644 permissions for /etc/hostapd/hostapd.conf, which might allow local users to obtain sensitive information such as credentials.
References
Configurations
Information
Published : 2012-06-21 08:55
Updated : 2013-04-18 20:21
NVD link : CVE-2012-2389
Mitre link : CVE-2012-2389
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
w1.fi
- hostapd