2.1 Low
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
NONE
Availability Impact
NONE
AV:L/AC:L/Au:N/C:P/I:N/A:N
5.7 Medium
AI Score
Confidence
Low
0.0004 Low
EPSS
Percentile
5.1%
Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the command line, which allows local users to obtain sensitive information by listing the process and its arguments, related to “echoing.”
lists.fedoraproject.org/pipermail/package-announce/2010-March/036697.html
lists.fedoraproject.org/pipermail/package-announce/2010-March/036701.html
lists.fedoraproject.org/pipermail/package-announce/2010-March/036764.html
secunia.com/advisories/38723
secunia.com/advisories/38814
secunia.com/secunia_research/2010-7/
www.securityfocus.com/archive/1/509688/100/0/threaded
www.securityfocus.com/bid/38352