Monkey HTTP Daemon (monkeyd) contains a flaw that may lead to unauthorized disclosure of potentially sensitive information. The issue is due to the program creating the master.log file with insecure world readable permissions, which may allow a local attacker to gain access to sensitive information stored within the log.