Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2162

Опубликовано: 19 авг. 2013
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 1.9

Описание

Race condition in the post-installation script (mysql-server-5.5.postinst) for MySQL Server 5.5 for Debian GNU/Linux and Ubuntu Linux creates a configuration file with world-readable permissions before restricting the permissions, which allows local users to read the file and obtain sensitive information such as credentials.

РелизСтатусПримечание
devel

released

5.5.32-0ubuntu1
lucid

DNE

precise

released

5.5.32-0ubuntu0.12.04.1
quantal

released

5.5.32-0ubuntu0.12.10.1
raring

released

5.5.32-0ubuntu0.13.04.1
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

lucid

ignored

precise

DNE

quantal

DNE

raring

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

lucid

released

5.1.70-0ubuntu0.10.04.1
precise

DNE

quantal

DNE

raring

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 9%
0.00034
Низкий

1.9 Low

CVSS2

Связанные уязвимости

nvd
больше 12 лет назад

Race condition in the post-installation script (mysql-server-5.5.postinst) for MySQL Server 5.5 for Debian GNU/Linux and Ubuntu Linux creates a configuration file with world-readable permissions before restricting the permissions, which allows local users to read the file and obtain sensitive information such as credentials.

debian
больше 12 лет назад

Race condition in the post-installation script (mysql-server-5.5.posti ...

github
больше 3 лет назад

Race condition in the post-installation script (mysql-server-5.5.postinst) for MySQL Server 5.5 for Debian GNU/Linux and Ubuntu Linux creates a configuration file with world-readable permissions before restricting the permissions, which allows local users to read the file and obtain sensitive information such as credentials.

EPSS

Процентиль: 9%
0.00034
Низкий

1.9 Low

CVSS2