Vulnerability Name: | CVE-2004-0080 (CCN-15016) | ||||||||
Assigned: | 2004-02-03 | ||||||||
Published: | 2004-02-03 | ||||||||
Updated: | 2017-10-10 | ||||||||
Summary: | The login program in util-linux 2.11 and earlier uses a pointer after it has been freed and reallocated, which could cause login to leak sensitive data. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: SGI Type: UNKNOWN 20040201-01-U Source: SGI Type: UNKNOWN 20040406-01-U Source: MITRE Type: CNA CVE-2004-0080 Source: BUGTRAQ Type: UNKNOWN 20040331 OpenLinux: util-linux could leak sensitive data Source: BUGTRAQ Type: UNKNOWN 20040408 LNSA-#2004-0010: login may leak sensitive data Source: CCN Type: RHSA-2004-056 util-linux security update Source: CCN Type: SA10773 Red Hat util-linux Login Program Information Leakage Source: SECUNIA Type: UNKNOWN 10773 Source: GENTOO Type: UNKNOWN GLSA-200404-06 Source: CCN Type: CIAC Information Bulletin O-087 Red Hat Updated util-linux Packages Fix Information Leak Source: CCN Type: GLSA-200404-06 Util-linux login may leak sensitive data Source: CCN Type: US-CERT VU#801526 util-linux login program discloses sensitive information Source: CERT-VN Type: US Government Resource VU#801526 Source: CCN Type: SCO Security Advisory CSSA-2004-016.0 OpenLinux: util-linux could leak sensitive data Source: CCN Type: Gentoo Security Advisory GLSA 200404-06 Util-linux login may leak sensitive data Source: OSVDB Type: UNKNOWN 3796 Source: CCN Type: OSVDB ID: 3796 Red Hat Linux util-linux Login Program Information Leakage Source: REDHAT Type: Patch, Vendor Advisory RHSA-2004:056 Source: BID Type: Vendor Advisory 9558 Source: CCN Type: BID-9558 Util-Linux Login Program Information Leakage Vulnerability Source: XF Type: UNKNOWN utillinux-information-leak(15016) Source: XF Type: UNKNOWN utillinux-information-leak(15016) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |