Your submission was sent successfully! Close

CVE-2011-3196

Published: 21 March 2014

The setup script in Domain Technologie Control (DTC) before 0.34.1 uses world-readable permissions for /etc/apache2/apache2.conf, which allows local users to obtain the dtcdaemons MySQL password by reading the file.

Priority

Low

Status

Package Release Status
dtc
Launchpad, Ubuntu, Debian
Upstream
Released (0.34.1-1)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist