Vulnerable Systems:
*sthttpd on Gentoo Linux 2.26.4
sthttpd on Gentoo Linux contains a flaw that may lead to unauthorized disclosure of potentially sensitive information. The issue is due to the program creating the thttpd.log file with insecure world readable permissions, which may allow a local attacker to gain access to sensitive information stored within the log.