CNCVE编号:CNCVE-20010378 CVE编号:CVE-2001-0378 安全级别:中 漏洞中文描述: OpenBSD 2.8及其早期版本中的readline 4.1早期版本用不安全的权限创立了历史文件,这允许本地攻击者通过readline历史文件来恢复可能存在的敏感信息。 漏洞英文描述: readline prior to 4.1, in OpenBSD 2.8 and earlier, creates history files with insecure permissions, which allows a local attacker to recover potentially sensitive information via readline history files. 漏洞参考: Reference: BUGTRAQ:20010320 readline patch available Reference: URL:http://archives.neohapsis.com/archives/openbsd/2001-03/1627.html Reference: CONFIRM:ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.8/common/024_readline.patch 系统类型:其他 漏洞类型:设计错误