CVE Vulnerabilities

CVE-2005-1387

Published: May 03, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Cocktail 3.5.4 and possibly earlier in Mac OS X passes the administrative password on the command line to sudo in cleartext, which allows local users to gain sensitive information by running listing processes.

Affected Software

Name Vendor Start Version End Version
Cocktail Kristofer_szymanski 3.5.4 (including) 3.5.4 (including)

References