Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-0195

Overview

Vulnerability Score 2.1 2.1
CVE Id CVE-2001-0195
Last Modified 05 Sep 2008 04:23:30
Published 26 Mar 2001 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2001-0195

Summary

sash before 3.4-4 in Debian GNU/Linux does not properly clone /etc/shadow, which makes it world-readable and could allow local users to gain privileges via password cracking.

Vulnerable Systems

Operating System

  • Debian Linux 2.2


References

XF - linux-sash-shadow-readable

DEBIAN - DSA-015


Last Updated: 27 May 2016 10:36:10