VulnerabilityModified
CVE-2012-0959
Remote Login Service (RLS) 1.0.0 does not properly clear account information when switching users, which might allow physically proximate users to obtain login credentials.
LOW 2.1EPSS 0.40%
Does this matter?
Lower severity and a low EPSS score (0.40%). Track it; it rarely justifies an emergency change on its own.
Description
Remote Login Service (RLS) 1.0.0 does not properly clear account information when switching users, which might allow physically proximate users to obtain login credentials.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 0.40% probability · 33th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- remote login service hackers/remote login service
- Source
- security@ubuntu.com
References
- http://www.ubuntu.com/usn/USN-1624-1
- https://bugs.launchpad.net/remote-login-service/%2Bbug/1070896
- https://exchange.xforce.ibmcloud.com/vulnerabilities/80278
- http://www.ubuntu.com/usn/USN-1624-1
- https://bugs.launchpad.net/remote-login-service/%2Bbug/1070896
- https://exchange.xforce.ibmcloud.com/vulnerabilities/80278
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.