FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

KeePassX -- information disclosure

Affected packages
KeePassX < 0.4.4

Details

VuXML ID 918a5d1f-9d40-11e5-8f5c-002590263bf5
Discovery 2015-07-08
Entry 2015-12-08

Yves-Alexis Perez reports:

Starting an export (using File / Export to / KeepassX XML file) and cancelling it leads to KeepassX saving a cleartext XML file in ~/.xml without any warning.

References

CVE Name CVE-2015-8378
FreeBSD PR ports/205105
URL http://www.openwall.com/lists/oss-security/2015/11/30/4