PT-2005-1671 · Debian · Reportbug
Rolf Leggewie
·
Published
2005-02-28
·
Updated
2017-07-11
·
CVE-2005-0625
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
reportbug version 3.2
Description
The issue exposes sensitive information, such as
smtpuser and smtppasswd, by including settings from the .reportbugrc file in bug reports.Recommendations
For reportbug version 3.2, consider removing or modifying the .reportbugrc file to exclude sensitive information, such as
smtpuser and smtppasswd, from being included in bug reports.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Reportbug