The kickstart file in Red Hat QuickStart Cloud Installer (QCI) forces use of MD5 passwords on deployed systems, which makes it easier for attackers to determine cleartext passwords via a brute-force attack.
Software security is not security software. Here we're concerned with topics like authentication, access control, confidentiality, cryptography, and privilege management.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1370315 | issue tracking vdb entry vendor advisory |
http://www.securityfocus.com/bid/92655 | vdb entry third party advisory |