Lucene search

K
ubuntucveUbuntu.comUB:CVE-2005-2174
HistoryJul 08, 2005 - 12:00 a.m.

CVE-2005-2174

2005-07-0800:00:00
ubuntu.com
ubuntu.com
10

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:H/Au:N/C:P/I:N/A:N

EPSS

0.001

Percentile

46.7%

Bugzilla 2.17.x, 2.18 before 2.18.2, 2.19.x, and 2.20 before 2.20rc1
inserts a bug into the database before it is marked private, which
introduces a race condition and allows attackers to access information
about the bug via buglist.cgi before MySQL replication is complete.

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:H/Au:N/C:P/I:N/A:N

EPSS

0.001

Percentile

46.7%