Bug 227: OPEN

subox security flaw

Date: 2019-11-25 - Creator: mistfire - Priority critical - 1 message

when subox saves root password. The password stores to a subox.conf in plain 
text without any obfuscation. I suggest that the password must be encrypted 
first before saving it. And decrypted when reading it by subox.

Affected package(s): slitaz-tools-boxes


By: pankso on 2021-01-22 21:15

Look like a security fix. Anyone to handle that ?