CVE Vulnerabilities

CVE-2011-1500

Published: Apr 13, 2011 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

PreferencesPithosDialog.py in Pithos 0.3.7 does not properly restrict permissions for the .config/pithos.ini file in a users home directory, which allows local users to obtain Pandora credentials by reading this file.

Affected Software

Name Vendor Start Version End Version
Pithos Kevinmehall 0.3.7 (including) 0.3.7 (including)
Pithos Ubuntu upstream *

References