CVE-2003-0461

/proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.

Date published : 2003-07-25

http://www.debian.org/security/2004/dsa-358

http://www.debian.org/security/2004/dsa-423