Description
The libdspam7-drv-mysql cron job in Debian GNU/Linux includes the MySQL dspam database password in a command line argument, which might allow local users to read the password by listing the process and its arguments.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1501-1 | New dspam packages fix information disclosure |
EUVD |
EUVD-2007-6384 | The libdspam7-drv-mysql cron job in Debian GNU/Linux includes the MySQL dspam database password in a command line argument, which might allow local users to read the password by listing the process and its arguments. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T16:02:36.845Z
Reserved: 2007-12-17T00:00:00.000Z
Link: CVE-2007-6418
No data.
Status : Modified
Published: 2007-12-18T00:46:00.000
Modified: 2026-04-23T00:35:47.467
Link: CVE-2007-6418
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD