CVE Vulnerabilities

CVE-2004-0653

Published: Aug 06, 2004 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an auth module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other users passwords by reading log files.

Affected Software

Name Vendor Start Version End Version
Solaris Sun 9.0 (including) 9.0 (including)

References