CVE-2014-3209
Publication date 15 November 2014
Last updated 24 July 2024
Ubuntu priority
The ldns-keygen tool in ldns 1.6.x uses the current umask to set the privileges of the private key, which might allow local users to obtain the private key by reading the file.
Status
Package | Ubuntu Release | Status |
---|---|---|
ldns | ||
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty |
Fixed 1.6.17-1ubuntu0.1
|
|
Notes
References
Related Ubuntu Security Notices (USN)
- USN-3491-1
- ldns vulnerabilities
- 22 November 2017