Описание
mysql-gui-tools (mysql-query-browser and mysql-admin) before 5.0r14+openSUSE-2.3 exposes the password of a user connected to the MySQL server in clear text form via the list of running processes.
mysql-gui-tools (mysql-query-browser and mysql-admin) before 5.0r14+openSUSE-2.3 exposes the password of a user connected to the MySQL server in clear text form via the list of running processes.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2010-4177
- https://access.redhat.com/security/cve/cve-2010-4177
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=605542
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4177
- https://security-tracker.debian.org/tracker/CVE-2010-4177
- https://www.openwall.com/lists/oss-security/2010/11/16/6
- http://www.securityfocus.com/bid/97959
Связанные уязвимости
mysql-gui-tools (mysql-query-browser and mysql-admin) before 5.0r14+openSUSE-2.3 exposes the password of a user connected to the MySQL server in clear text form via the list of running processes.
mysql-gui-tools (mysql-query-browser and mysql-admin) before 5.0r14+openSUSE-2.3 exposes the password of a user connected to the MySQL server in clear text form via the list of running processes.
mysql-gui-tools (mysql-query-browser and mysql-admin) before 5.0r14+op ...
Уязвимость пакета mysql-gui-tools (mysql-query-browser и mysql-admin), связанная с хранением учетных данных в незашифрованном виде, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации