Vulnerability Description
In crypt.c of remote-login-service, the cryptographic algorithm used to cache usernames and passwords is insecure. An attacker could use this vulnerability to recover usernames and passwords from the file. This issue affects version 1.0.0-0ubuntu3 and prior versions.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical | Remote-Login-Service | <= 1.0.0-0ubuntu3 |
Related Weaknesses (CWE)
References
- https://launchpad.net/bugs/1158373Third Party Advisory
- https://launchpad.net/bugs/1158373Third Party Advisory
FAQ
What is CVE-2013-1053?
CVE-2013-1053 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In crypt.c of remote-login-service, the cryptographic algorithm used to cache usernames and passwords is insecure. An attacker could use this vulnerability to recover usernames and passwords from the ...
How severe is CVE-2013-1053?
CVE-2013-1053 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-1053?
Check the references section above for vendor advisories and patch information. Affected products include: Canonical Remote-Login-Service.