Описание
An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detection of the username in the rule due to non-constant execution time. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.
Релиз | Статус | Примечание |
---|---|---|
artful | not-affected | 4:4.6.5.1-1 |
bionic | not-affected | 4:4.6.5.1-1 |
cosmic | not-affected | 4:4.6.5.1-1 |
devel | not-affected | 4:4.6.5.1-1 |
disco | not-affected | 4:4.6.5.1-1 |
eoan | DNE | |
esm-apps/bionic | not-affected | 4:4.6.5.1-1 |
esm-apps/focal | not-affected | 4:4.6.5.1-1 |
esm-apps/jammy | not-affected | 4:4.6.5.1-1 |
esm-apps/noble | not-affected | 4:4.6.5.1-1 |
Показывать по
EPSS
5 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detection of the username in the rule due to non-constant execution time. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.
An issue was discovered in phpMyAdmin. Username matching for the allow ...
An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detection of the username in the rule due to non-constant execution time. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.
EPSS
5 Medium
CVSS2
5.3 Medium
CVSS3