1 results (0.000 seconds)
CVSS: 8.1EPSS: 0%CPEs: 3EXPL: 0

CVE-2018-14348 – libcgroup: cgrulesengd creates log files with insecure permissions
https://notcve.org/view.php?id=CVE-2018-14348
14 Aug 2018 — libcgroup up to and including 0.41 creates /var/log/cgred with mode 0666 regardless of the configured umask, leading to disclosure of information. libcgroup hasta el incluyendo la versión 0.41 crea /var/log/cgred con el modo 0666 independientemente del umask configurado, lo que conduce a una fuga de información. The libcgroup packages provide tools and libraries to control and monitor control groups. An insecure permission issue was addressed. • http://lists.opensuse.org/opensuse-security-announce/2018-08/msg00023.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control •