Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Insecure crypto for storing passwords
Vulnerability Description
In crypt.c of remote-login-service, the cryptographic algorithm used to cache usernames and passwords is insecure. An attacker could use this vulnerability to recover usernames and passwords from the file. This issue affects version 1.0.0-0ubuntu3 and prior versions.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
口令使用弱密码学算法
Vulnerability Title
Canonical Ubuntu Remote-login-service 加密问题漏洞
Vulnerability Description
Canonical Ubuntu是英国科能(Canonical)公司的一套以桌面应用为主的GNU/Linux操作系统。 Canonical Ubuntu 的 remote-login-service 服务存在安全漏洞,该漏洞源于remote-login-service的crypt.c中用于缓存用户名和密码的加密算法是不安全的。攻击者可利用该漏洞可以利用这个漏洞从文件中恢复用户名和密码。
CVSS Information
N/A
Vulnerability Type
N/A