Back

MEDIUM

Insecure crypto for storing passwords

Published Jan 13, 2021

Description

In crypt.c of remote-login-service, the cryptographic algorithm used to cache usernames and passwords is insecure. An attacker could use this vulnerability to recover usernames and passwords from the file. This issue affects version 1.0.0-0ubuntu3 and prior versions.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner canonical
Published Jan 13, 2021
Updated Sep 16, 2024
Reserved Jan 11, 2013
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity n/a
Public date n/a