Debian Shadow 4.0.14

CPE Details

Debian Shadow 4.0.14
4.0.14
2020-08-11
15h07 +00:00
2020-08-11
15h07 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:debian:shadow:4.0.14:*:*:*:*:*:*:*

Informations

Vendor

debian

Product

shadow

Version

4.0.14

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2005-4890 2019-11-04 17h38 +00:00 There is a possible tty hijacking in shadow 4.x before 4.1.5 and sudo 1.x before 1.7.4 via "su - user -c program". The user session can be escaped to the parent session by using the TIOCSTI ioctl to push characters into the input buffer to be read by the next process.
7.8
Haute
CVE-2006-1844 2006-04-19 16h00 +00:00 The Debian installer for the (1) shadow 4.0.14 and (2) base-config 2.53.10 packages includes sensitive information in world-readable log files, including preseeded passwords and pppoeconf passwords, which might allow local users to gain privileges.
2.1