Unrated severityNVD Advisory· Published Feb 25, 2010· Updated Apr 29, 2026
CVE-2010-0119
CVE-2010-0119
Description
Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the command line, which allows local users to obtain sensitive information by listing the process and its arguments, related to "echoing."
Affected products
14cpe:2.3:a:becauseinter:bournal:*:*:*:*:*:*:*:*+ 13 more
- cpe:2.3:a:becauseinter:bournal:*:*:*:*:*:*:*:*range: <=1.4
- cpe:2.3:a:becauseinter:bournal:0.1:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:0.2:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:0.3:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:0.4:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:0.4.5:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:0.6:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:0.7:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:0.8:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:0.9:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:1.0:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:1.1:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:1.2:*:*:*:*:*:*:*
- cpe:2.3:a:becauseinter:bournal:1.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- secunia.com/advisories/38723nvdVendor Advisory
- secunia.com/secunia_research/2010-7/nvdVendor Advisory
- lists.fedoraproject.org/pipermail/package-announce/2010-March/036697.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2010-March/036701.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2010-March/036764.htmlnvd
- secunia.com/advisories/38814nvd
- www.securityfocus.com/archive/1/509688/100/0/threadednvd
- www.securityfocus.com/bid/38352nvd
News mentions
0No linked articles in our index yet.