LWN.net Logo

dtach: information disclosure

Package(s):dtach CVE #(s):CVE-2012-3368
Created:March 5, 2013 Updated:March 6, 2013
Description: From the Red Hat bugzilla:

A portion of memory (random stack data) disclosure flaw was found in the way dtach, a simple program emulating the detach feature of screen, performed client connection termination under certain circumstances. A remote attacker could use this flaw to potentially obtain sensitive information by issuing a specially-crafted dtach client connection close request.

Alerts:
Fedora FEDORA-2013-2923 2013-03-04

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds