This script is Copyright (C) 2014 Tenable Network Security, Inc.
The remote Gentoo host is missing one or more security-related
The remote host is affected by the vulnerability described in GLSA-201401-03
(Nagstamon: Information disclosure)
s automatic request to check for updates includes plaintext
username and password information for one of the monitor servers that the
Nagstamon instance connects to.
A remote attacker could eavesdrop on this request and gain user
credentials for a monitor server.
There is no known workaround at this time.
See also :
All Nagstamon users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose
Risk factor :
Medium / CVSS Base Score : 5.0
CVSS Temporal Score : 4.3
Public Exploit Available : true