CVE

Id
59383  
CVE No.
CVE-2012-6140  
Status
Candidate  
Description
pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass intended access restrictions and discover a shared secret via standard filesystem operations, a different vulnerability than CVE-2013-0258.  
Phase
Assigned (20121206)  
Votes
None (candidate not yet proposed)  
Comments