/keepass_poc

POC for KeePass [CVE-2022-0725]

GNU General Public License v3.0GPL-3.0

POC for KeePass [CVE-2022-0725]

Steps to Reproduce:

Step 1: Run "journalctl -f" in a terminal window.
Step 2: Double click a password in KeePass.
Step 3: Wait for the clear timeout to trigger.

Actual results:
See your plain text password logged in the terminal window

Expected results:
Never see your plain text password logged anywhere

Reference:

https://bugzilla.redhat.com/show_bug.cgi?id=2052696

NOTE: Vulnerability Only Present in KeePass. Not in KeePassXC and Other Packages.