|
|
Subscribe / Log in / New account

request-tracker: unsalted password hashing

Package(s):request-tracker3.6 CVE #(s):CVE-2011-0009
Created:January 24, 2011 Updated:May 25, 2012
Description: From the Debian advisory:

It was discovered that Request Tracker, an issue tracking system, stored passwords in its database by using an insufficiently strong hashing method. If an attacker would have access to the password database, he could decode the passwords stored in it.

Alerts:
Debian DSA-2150-1 request-tracker3.6 2011-01-22

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds