PT-2007-6636 · Bacula · Bacula
Matthijs Kooijman
·
Published
2007-10-23
·
Updated
2024-01-25
·
CVE-2007-5626
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Bacula version 2.2.5
Description
The issue allows context-dependent attackers to obtain a MySQL password. This is possible because the
make catalog backup function in Bacula sends the MySQL password as a command line argument. In some cases, it also transmits cleartext e-mail containing this command line, which can be exploited by listing the process and its arguments or by sniffing the network.Recommendations
For Bacula version 2.2.5, consider modifying the
make catalog backup function to handle the MySQL password securely, such as by using environment variables or a secure configuration file, to prevent it from being exposed as a command line argument or in cleartext e-mail. As a temporary workaround, restrict access to the process list and network traffic to minimize the risk of exploitation.Fix
Cleartext Transmission of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Bacula