Security
Headlines
HeadlinesLatestCVEs

Headline

Ubuntu Security Notice USN-5451-1

Ubuntu Security Notice 5451-1 - Ilya Averyanov discovered that an InfluxDB vulnerability allowed attackers to bypass authentication and gain access to any known database user.

Packet Storm
#vulnerability#ubuntu#auth
==========================================================================Ubuntu Security Notice USN-5451-1May 31, 2022influxdb vulnerability==========================================================================A security issue affects these releases of Ubuntu and its derivatives:- Ubuntu 20.04 LTS- Ubuntu 18.04 LTSSummary:An InfluxDB vulnerability allowed attackers to login as any knowndatabase user.Software Description:- influxdb: Scalable datastore for metrics, events, and real-time analyticsDetails:Ilya Averyanov discovered that an InfluxDB vulnerability allowedattackers to bypass authentication and gain access to any knowndatabase user.Update instructions:The problem can be corrected by updating your system to the followingpackage versions:Ubuntu 20.04 LTS:influxdb 1.6.4-1+deb10u1build0.20.04.1Ubuntu 18.04 LTS:influxdb 1.1.1+dfsg1-4+deb9u1ubuntu1After a standard system update you need to restart the influxdbservice to make all the necessary changes.References:https://ubuntu.com/security/notices/USN-5451-1CVE-2019-20933Package Information:https://launchpad.net/ubuntu/+source/influxdb/1.6.4-1+deb10u1build0.20.04.1https://launchpad.net/ubuntu/+source/influxdb/1.1.1+dfsg1-4+deb9u1ubuntu1

Packet Storm: Latest News

NIELD (Network Interface Events Logging Daemon) 0.6.2