Description
aria2c in aria2 1.33.1, when --log is used, can store an HTTP Basic Authentication username and password in a file, which might allow local users to obtain sensitive information by reading this file.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1636-1 | aria2 security update |
Debian DLA |
DLA-2873-1 | aria2 security update |
EUVD |
EUVD-2019-13137 | aria2c in aria2 1.33.1, when --log is used, can store an HTTP Basic Authentication username and password in a file, which might allow local users to obtain sensitive information by reading this file. |
Ubuntu USN |
USN-3965-1 | aria2 vulnerability |
Ubuntu USN |
USN-4869-1 | aria2 vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T19:12:09.519Z
Reserved: 2019-01-02T00:00:00.000Z
Link: CVE-2019-3500
No data.
Status : Modified
Published: 2019-01-02T07:29:00.197
Modified: 2024-11-21T04:42:08.880
Link: CVE-2019-3500
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN