Bugzilla – Bug 1215508
VUL-0: CVE-2023-43621: croc: shared secret, located on a command line, can be read by local users who list all processes and their arguments
Last modified: 2023-09-20 09:15:06 UTC
CVE-2023-43621 An issue was discovered in Croc through 9.6.5. The shared secret, located on a command line, can be read by local users who list all processes and their arguments. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-43621 https://www.cve.org/CVERecord?id=CVE-2023-43621 http://www.openwall.com/lists/oss-security/2023/09/08/2 https://github.com/schollz/croc/issues/598
Please submit to the following code streams: network croc openSUSE:Backports:SLE-15-SP6 croc