CVE-2013-2162
Publication date 10 June 2013
Last updated 24 July 2024
Ubuntu priority
Race condition in the post-installation script (mysql-server-5.5.postinst) for MySQL Server 5.5 for Debian GNU/Linux and Ubuntu Linux creates a configuration file with world-readable permissions before restricting the permissions, which allows local users to read the file and obtain sensitive information such as credentials.
Status
Package | Ubuntu Release | Status |
---|---|---|
mysql-5.5 | ||
mysql-cluster-7.0 | ||
mysql-dfsg-5.1 | ||
Notes
References
Related Ubuntu Security Notices (USN)
- USN-1909-1
- MySQL vulnerabilities
- 25 July 2013