Descriptionsudo in SUSE openSUSE 10.3 does not clear the stdin buffer when password entry times out, which might allow local users to obtain a password by reading stdin from the parent process after a sudo child process exits.
Overall state of this security issue: Resolved
This issue is currently not rated by SUSE as it is not affecting the SUSE Enterprise products.
|National Vulnerability Database|
SUSE Timeline for this CVECVE page created: Tue Jul 9 16:07:18 2013
CVE page last modified: Fri Oct 7 12:45:42 2022