Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-3427

Опубликовано: 14 мая 2015
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

Quassel before 0.12.2 does not properly re-initialize the database session when the PostgreSQL database is restarted, which allows remote attackers to conduct SQL injection attacks via a \ (backslash) in a message. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4422.

РелизСтатусПримечание
devel

not-affected

0.12.1-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [0.10.0-0ubuntu2.2]]
lucid

ignored

end of life
precise

not-affected

QT 4.8.1
trusty

released

0.10.0-0ubuntu2.2
trusty/esm

DNE

trusty was released [0.10.0-0ubuntu2.2]
upstream

needed

utopic

released

0.10.1-0ubuntu1.2
vivid

released

0.12.2-0ubuntu0.1

Показывать по

EPSS

Процентиль: 63%
0.00439
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
больше 10 лет назад

Quassel before 0.12.2 does not properly re-initialize the database session when the PostgreSQL database is restarted, which allows remote attackers to conduct SQL injection attacks via a \ (backslash) in a message. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4422.

debian
больше 10 лет назад

Quassel before 0.12.2 does not properly re-initialize the database ses ...

github
больше 3 лет назад

Quassel before 0.12.2 does not properly re-initialize the database session when the PostgreSQL database is restarted, which allows remote attackers to conduct SQL injection attacks via a \ (backslash) in a message. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4422.

EPSS

Процентиль: 63%
0.00439
Низкий

7.5 High

CVSS2