CVE-2018-17956

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
15/03/2019
Last modified:
07/11/2023

Description

In yast2-samba-provision up to and including version 1.0.1 the password for samba shares was provided on the command line to tools used by yast2-samba-provision, allowing local attackers to read them in the process list

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:opensuse:yast2-samba-provision:*:*:*:*:*:*:*:* 1.0.1 (including)


References to Advisories, Solutions, and Tools