CVE-2008-6549
The password_checker function in config/multiconfig.py in MoinMoin 1.6.1 uses the cracklib and python-crack features even though they are not thread-safe, which allows remote attackers to cause a denial of service (segmentation fault and crash) via unknown vectors.
- Affected products
- Moinmoin
- Moinmo Moinmoin
- = 1.6.1
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 1.5% (71th percentile)
- NVD status
- Modified
- Published
- 2009-03-30
CVE-2008-6549 at NVD
No indexed exploits for CVE-2008-6549 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2008-6549 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.