Vulnerabilities > Alpinelinux > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-07-05 | CVE-2021-36158 | Cleartext Storage of Sensitive Information vulnerability in Alpinelinux Aports In the xrdp package (in branches through 3.14) for Alpine Linux, RDP sessions are vulnerable to man-in-the-middle attacks because pre-generated RSA certificates and private keys are used. | 5.9 |
2019-06-18 | CVE-2019-12875 | Missing Authorization vulnerability in Alpinelinux Abuild Alpine Linux abuild through 3.4.0 allows an unprivileged member of the abuild group to add an untrusted package via a --keys-dir option that causes acceptance of an untrusted signing key. | 6.5 |