CVE-2013-4481: Red Hat Enterprise Linux

Low severity, CVSS 1.9. EPSS: 0.2% chance of exploitation in the next 30 days.

Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions before restricting the permissions, which allows local users to read the file and obtain sensitive information such as "authentication secrets."

Affected products

Published 2013-11-23. Last modified 2026-06-16.