CVE-2009-1073
31.03.2009, 18:24
nss-ldapd before 0.6.8 uses world-readable permissions for the /etc/nss-ldapd.conf file, which allows local users to obtain a cleartext password for the LDAP server by reading the bindpw field.Enginsight
Vendor | Product | Version |
---|---|---|
debian | nss-ldap | 𝑥 < 0.6.8 |
debian | debian_linux | 5.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References