CVE-2012-2679

Publication date

2012-10-22 23:00:00

Family

redhat

State

PUBLISHED

Description

Red Hat Network (RHN) Configuration Client (rhncfg-client) in rhncfg before 5.10.27-8 uses weak permissions (world-readable) for /var/log/rhncfg-actions, which allows local users to obtain sensitive information about the rhncfg-client actions by reading the file.