LWN.net Logo

File exposure vulnerability in interchange

Package(s):interchange CVE #(s):
Created:August 14, 2002 Updated:August 14, 2002
Description: A problem has been discovered in interchange which may allow a remote attacker to read any file for which the user of the Interchange daemon has sufficient permissions. Interchange must be running in "INET mode" (internet domain socket) to be vulnerable. This is not the default setting, at least in Debian packages.

Interchange is an e-commerce and general HTTP database display system.

Alerts:
Debian DSA-150-1 2002-08-13

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds