kedpm 0.5 and 1.0 creates a history file in ~/.kedpm/history that is written in cleartext. All of the commands performed in the password manager are written there. This can lead to the disclosure of the master password if the "password" command is used with an argument. The names of the password entries created and consulted are also accessible in cleartext.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2017-04-27T15:00:00

Updated: 2024-08-05T16:34:21.669Z

Reserved: 2017-04-27T00:00:00

Link: CVE-2017-8296

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-04-27T15:59:00.197

Modified: 2024-11-21T03:33:43.230

Link: CVE-2017-8296

cve-icon Redhat

No data.