CVE

Id
23830  
CVE No.
CVE-2007-0473  
Status
Candidate  
Description
The writeFile function in core/smb4kfileio.cpp in Smb4K before 0.8.0 does not preserve /etc/sudoers permissions across modifications, which allows local users to obtain sensitive information (/etc/sudoers contents) by reading this file.  
Phase
Assigned (20070124)  
Votes
None (candidate not yet proposed)  
Comments