It is reported that the Gentoo Portage-built Webmin binary package discloses the build host's root password to remote users. Any users who build the affected Webmin binary and share it with other users are at a risk of compromise. Gentoo app-admin/webmin packages prior to 1.170-r3 are vulnerable to this issue.
It is reported that the Gentoo Portage-built Webmin binary package discloses the build host's root password to remote users. Any users who build the affected Webmin binary and share it with other users are at a risk of compromise. Gentoo app-admin/webmin packages prior to 1.170-r3 are vulnerable to this issue.