LWN.net Logo

sos: key disclosure

Package(s):sos CVE #(s):CVE-2011-4083
Created:December 7, 2011 Updated:January 17, 2013
Description: From the Red Hat advisory: The sosreport utility incorrectly included Certificate-based Red Hat Network private entitlement keys in the resulting archive of debugging information. An attacker able to access the archive could use the keys to access Red Hat Network content available to the host.
Alerts:
Scientific Linux SL-sos-20111206 2011-12-06
Red Hat RHSA-2011:1536-03 2011-12-06
Red Hat RHSA-2012:0153-03 2012-02-21
Oracle ELSA-2012-0153 2012-03-07
Scientific Linux SL-sos-20120321 2012-03-21
CentOS CESA-2012:0153 2013-01-09

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds