CVE-2024-2905

CVSS V2 None CVSS V3 None
Description
A security vulnerability has been discovered within rpm-ostree, pertaining to the /etc/shadow file in default builds having the world-readable bit enabled. This issue arises from the default permissions being set at a higher level than recommended, potentially exposing sensitive authentication data to unauthorized access.
Overview
  • CVE ID
  • CVE-2024-2905
  • Assigner
  • redhat
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-04-25T17:44:15.985Z
  • Last Modified Date
  • 2024-06-18T20:12:26.235Z
History
Created Old Value New Value Data Type Notes
2024-06-25 23:34:45 Added to TrackCVE