CVE-2014-0246
EPSS 0.56%
Description
SOSreport stores the md5 hash of the GRUB bootloader password in an archive, which allows local users to obtain sensitive information by reading the archive.
How to fix CVE-2014-0246
No fixed version has been published yet. Mitigate by removing the affected package or applying upstream guidance from the references below.
- Debian/sosreport—no fix listed
Is CVE-2014-0246 being exploited?
Low — EPSS is 0.6%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0