Linux kernel through 3.1 allows local users to obtain sensitive keystroke information via access to /dev/pts/ and /dev/tty*.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://www.openwall.com/lists/oss-security/2011/12/28/3 | mailing list exploit third party advisory |
https://lkml.org/lkml/2011/11/7/355 | mailing list exploit third party advisory |