CVE-2013-4217

Intel WiMAX Network Service < 1.5.2 - Cleartext Password Exposure in OSAL Crypt Module

Title source: llm
STIX 2.1

Description

The OSAL_Crypt_SetEncryptedPassword function in InfraStack/OSDependent/Linux/OSAL/Services/wimax_osal_crypt_services.c in the OSAL crypt module in the Intel WiMAX Network Service through 1.5.2 for Intel Wireless WiMAX Connection 2400 devices logs a cleartext password during certain attempts to set a password, which allows local users to obtain sensitive information by reading a log file.

References (2)

Core 2
Core References
Issue Tracking x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=911121
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2013/08/08/17

Scores

EPSS 0.0005
EPSS Percentile 16.2%

Details

CWE
CWE-310
Status published
Products (2)
intel/wimax_network_service 1.5.0
intel/wimax_network_service < 1.5.2
Published Aug 25, 2013
Tracked Since Feb 18, 2026