In crypt.c of remote-login-service, the cryptographic algorithm used to cache usernames and passwords is insecure. An attacker could use this vulnerability to recover usernames and passwords from the file. This issue affects version 1.0.0-0ubuntu3 and prior versions.
References
Link | Resource |
---|---|
https://launchpad.net/bugs/1158373 | Third Party Advisory |
Configurations
Information
Published : 2021-01-13 15:15
Updated : 2021-01-21 08:54
NVD link : CVE-2013-1053
Mitre link : CVE-2013-1053
JSON object : View
CWE
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
Products Affected
canonical
- remote-login-service