Eraser 5.3 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
References
Link | Resource |
---|---|
http://www.securityfocus.com/archive/1/251565 | Broken Link Third Party Advisory VDB Entry |
http://www.seifried.org/security/advisories/kssa-003.html | Broken Link Vendor Advisory |
http://www.ciac.org/ciac/bulletins/m-034.shtml | Broken Link Vendor Advisory |
http://www.securityfocus.com/bid/3912 | Broken Link Third Party Advisory VDB Entry |
http://www.iss.net/security_center/static/7953.php | Broken Link |
Configurations
History
08 Feb 2024, 20:33
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:tolvanen:eraser:5.3:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
CWE | CWE-459 | |
First Time |
Tolvanen eraser
Tolvanen |
|
References | (MISC) http://www.seifried.org/security/advisories/kssa-003.html - Broken Link, Vendor Advisory | |
References | (CIAC) http://www.ciac.org/ciac/bulletins/m-034.shtml - Broken Link, Vendor Advisory | |
References | (BID) http://www.securityfocus.com/bid/3912 - Broken Link, Third Party Advisory, VDB Entry | |
References | (BUGTRAQ) http://www.securityfocus.com/archive/1/251565 - Broken Link, Third Party Advisory, VDB Entry | |
References | (XF) http://www.iss.net/security_center/static/7953.php - Broken Link |
Information
Published : 2002-12-31 05:00
Updated : 2024-02-08 20:33
NVD link : CVE-2002-2068
Mitre link : CVE-2002-2068
JSON object : View
Products Affected
tolvanen
- eraser
CWE
CWE-459
Incomplete Cleanup