Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-2219

Опубликовано: 29 июл. 2013
Источник: redhat
CVSS2: 4.3

Описание

The Red Hat Directory Server before 8.2.11-13 and 389 Directory Server do not properly restrict access to entity attributes, which allows remote authenticated users to obtain sensitive information via a search query for the attribute.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7389-ds-baseNot affected
Red Hat Directory Server 8 for RHEL 5redhat-ds-baseFixedRHSA-2013:111630.07.2013
Red Hat Enterprise Linux 6389-ds-baseFixedRHSA-2013:111930.07.2013

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=979508Server: ACLs inoperative in some search scenarios

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
около 12 лет назад

The Red Hat Directory Server before 8.2.11-13 and 389 Directory Server do not properly restrict access to entity attributes, which allows remote authenticated users to obtain sensitive information via a search query for the attribute.

nvd
около 12 лет назад

The Red Hat Directory Server before 8.2.11-13 and 389 Directory Server do not properly restrict access to entity attributes, which allows remote authenticated users to obtain sensitive information via a search query for the attribute.

debian
около 12 лет назад

The Red Hat Directory Server before 8.2.11-13 and 389 Directory Server ...

github
больше 3 лет назад

The Red Hat Directory Server before 8.2.11-13 and 389 Directory Server do not properly restrict access to entity attributes, which allows remote authenticated users to obtain sensitive information via a search query for the attribute.

oracle-oval
около 12 лет назад

ELSA-2013-1119: 389-ds-base security and bug fix update (MODERATE)

4.3 Medium

CVSS2