Security Advisory

CVE-2012-0961

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-12-26 22:00:00
Last updated 2024-09-16 17:28:35
Assigner canonical
CVSS score not scored
State PUBLISHED

Description

Apt 0.8.16~exp5ubuntu13.x before 0.8.16~exp5ubuntu13.6, 0.8.16~exp12ubuntu10.x before 0.8.16~exp12ubuntu10.7, and 0.9.7.5ubuntu5.x before 0.9.7.5ubuntu5.2, as used in Ubuntu, uses world-readable permissions for /var/log/apt/term.log, which allows local users to obtain sensitive shell information by reading the log file.