diff options
author | eadler <eadler@FreeBSD.org> | 2012-09-15 10:19:37 +0800 |
---|---|---|
committer | eadler <eadler@FreeBSD.org> | 2012-09-15 10:19:37 +0800 |
commit | 15d0c3dffc41d83a31ef1c04900367a95f32905b (patch) | |
tree | 1dbe5140173a6aa3e9c72020e0c8f7e0ba457461 /security | |
parent | 0fe7cc68e9c8c0c335dff1f97f081db14d738a66 (diff) | |
download | freebsd-ports-gnome-15d0c3dffc41d83a31ef1c04900367a95f32905b.tar.gz freebsd-ports-gnome-15d0c3dffc41d83a31ef1c04900367a95f32905b.tar.zst freebsd-ports-gnome-15d0c3dffc41d83a31ef1c04900367a95f32905b.zip |
Tell the world about the recent bacula vuln
Diffstat (limited to 'security')
-rw-r--r-- | security/vuxml/vuln.xml | 31 |
1 files changed, 31 insertions, 0 deletions
diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 363a4477933c..14807954fced 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -51,6 +51,37 @@ Note: Please add new entries to the beginning of this file. --> <vuxml xmlns="http://www.vuxml.org/apps/vuxml-1"> + <vuln vid="143f6932-fedb-11e1-ad4a-003067b2972c"> + <topic>bacula -- Console ACL Bypass</topic> + <affects> + <package> + <name>bacula</name> + <range><lt>5.2.11</lt></range> + </package> + </affects> + <description> + <body xmlns="http://www.w3.org/1999/xhtml"> + <blockquote cite="https://secunia.com/advisories/50535/"> + <p>A security issue has been reported in Bacula, which can be + exploited by malicious users to bypass certain security + restrictions.</p> + <p>The security issue is caused due to an error within the implementation + of console ACLs, which can be exploited to gain access to certain + restricted functionality and e.g. dump resources.</p> + </blockquote> + </body> + </description> + <references> + <url>http://www.bacula.org/git/cgit.cgi/bacula/commit/?id=67debcecd3d530c429e817e1d778e79dcd1db905</url> + <url>https://secunia.com/advisories/50535/</url> + <url>http://sourceforge.net/projects/bacula/files/bacula/5.2.11/ReleaseNotes/view</url> + </references> + <dates> + <discovery>2012-09-12</discovery> + <entry>2012-09-15</entry> + </dates> + </vuln> + <vuln vid="178ba4ea-fd40-11e1-b2ae-001fd0af1a4c"> <topic>mod_pagespeed -- multiple vulnerabilities</topic> <affects> |