CVE-2008-1383
EUVD-2008-139018.03.2008, 22:44
The docert function in ssl-cert.eclass, when used by src_compile or src_install on Gentoo Linux, stores the SSL key in a binpkg, which allows local users to extract the key from the binpkg, and causes multiple systems that use this binpkg to have the same SSL key and certificate.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gentoo | linux | * |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References