Bugzilla Multiple Remote Vulnerabilities
BID:25425
Info
Bugzilla Multiple Remote Vulnerabilities
| Bugtraq ID: | 25425 |
| Class: | Unknown |
| CVE: |
CVE-2007-4538 CVE-2007-4539 CVE-2007-4543 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 23 2007 12:00AM |
| Updated: | Oct 01 2007 06:29PM |
| Credit: | The vendor credits Frédéric Buclin, Max Kanat-Alexander, Dave Miller, Loïc Minier and Masahiro Yamada with the discovery of these vulnerabilities. |
| Vulnerable: |
Mozilla Bugzilla 3.1 Mozilla Bugzilla 3.0 Mozilla Bugzilla 2.23.4 Mozilla Bugzilla 2.23.3 Mozilla Bugzilla 2.23.2 Mozilla Bugzilla 2.22.2 Mozilla Bugzilla 2.22.1 Mozilla Bugzilla 2.21.2 Mozilla Bugzilla 2.21.1 Mozilla Bugzilla 2.21 Mozilla Bugzilla 2.20.4 Mozilla Bugzilla 2.20.3 Mozilla Bugzilla 2.20.2 Mozilla Bugzilla 2.20.1 Mozilla Bugzilla 2.20 rc2 Mozilla Bugzilla 2.20 rc1 Mozilla Bugzilla 2.19.3 Mozilla Bugzilla 2.19.2 Mozilla Bugzilla 2.19.1 Mozilla Bugzilla 2.19 Mozilla Bugzilla 2.18.6 Mozilla Bugzilla 2.18.5 Mozilla Bugzilla 2.18.4 Mozilla Bugzilla 2.18.3 Mozilla Bugzilla 2.18.2 Mozilla Bugzilla 2.18.1 Mozilla Bugzilla 2.18 rc3 Mozilla Bugzilla 2.18 rc2 Mozilla Bugzilla 2.18 rc1 Mozilla Bugzilla 2.17.7 Mozilla Bugzilla 2.17.6 Mozilla Bugzilla 2.17.5 Mozilla Bugzilla 2.17.4 Mozilla Bugzilla 2.17.3 Mozilla Bugzilla 2.17.1 Mozilla Bugzilla 2.9 Mozilla Bugzilla 2.8 Mozilla Bugzilla 2.6 Mozilla Bugzilla 2.4 Mozilla Bugzilla 2.22 RC1 Mozilla Bugzilla 2.22 Mozilla Bugzilla 2.20 Gentoo Linux |
| Not Vulnerable: |
Mozilla Bugzilla 3.1.1 Mozilla Bugzilla 3.0.1 Mozilla Bugzilla 2.22.3 Mozilla Bugzilla 2.20.5 |
Discussion
Bugzilla Multiple Remote Vulnerabilities
Bugzilla is prone to multiple remote vulnerabilities, including an HTML-injection issue, a remote command-injection issue, and an information-disclosure issue.
An attacker can exploit these issues to execute arbitrary code and commands with the privileges of the webserver process, steal cookie-based authentication credentials, and obtain sensitive information.
These issues affects Bugzilla 2.20.4, 2.22.2, 3.0, 3.1; prior versions of the 2.20 and 2.22 branches are also affected.
Bugzilla is prone to multiple remote vulnerabilities, including an HTML-injection issue, a remote command-injection issue, and an information-disclosure issue.
An attacker can exploit these issues to execute arbitrary code and commands with the privileges of the webserver process, steal cookie-based authentication credentials, and obtain sensitive information.
These issues affects Bugzilla 2.20.4, 2.22.2, 3.0, 3.1; prior versions of the 2.20 and 2.22 branches are also affected.
Exploit / POC
Bugzilla Multiple Remote Vulnerabilities
An attacker can exploit these issues through a browser.
An attacker can exploit these issues through a browser.
Solution / Fix
Bugzilla Multiple Remote Vulnerabilities
Solution:
The vendor released updates to address these issues. Please see the references for more information.
Mozilla Bugzilla 2.20
Mozilla Bugzilla 2.20 rc2
Mozilla Bugzilla 2.20 rc1
Mozilla Bugzilla 2.20.1
Mozilla Bugzilla 2.20.2
Mozilla Bugzilla 2.20.3
Mozilla Bugzilla 2.20.4
Mozilla Bugzilla 2.22.1
Mozilla Bugzilla 2.22.2
Mozilla Bugzilla 3.0
Mozilla Bugzilla 3.1
Solution:
The vendor released updates to address these issues. Please see the references for more information.
Mozilla Bugzilla 2.20
-
Bugzilla bugzilla-2.20.5.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.20.5.tar.gz
Mozilla Bugzilla 2.20 rc2
-
Bugzilla bugzilla-2.20.5.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.20.5.tar.gz
Mozilla Bugzilla 2.20 rc1
-
Bugzilla bugzilla-2.20.5.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.20.5.tar.gz
Mozilla Bugzilla 2.20.1
-
Bugzilla bugzilla-2.20.5.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.20.5.tar.gz
Mozilla Bugzilla 2.20.2
-
Bugzilla bugzilla-2.20.5.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.20.5.tar.gz
Mozilla Bugzilla 2.20.3
-
Bugzilla bugzilla-2.20.5.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.20.5.tar.gz
Mozilla Bugzilla 2.20.4
-
Bugzilla bugzilla-2.20.5.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.20.5.tar.gz
Mozilla Bugzilla 2.22.1
-
Bugzilla bugzilla-2.22.3.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.22.3.tar.gz
Mozilla Bugzilla 2.22.2
-
Bugzilla bugzilla-2.22.3.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-2.22.3.tar.gz
Mozilla Bugzilla 3.0
-
Bugzilla bugzilla-3.0.1.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-3.0.1.tar.gz
Mozilla Bugzilla 3.1
-
Bugzilla bugzilla-3.1.1.tar.gz
http://ftp.mozilla.org/pub/mozilla.org/webtools/bugzilla-3.1.1.tar.gz
References
Bugzilla Multiple Remote Vulnerabilities
References:
References:
- Bugzilla Homepage (Mozilla)
- 2.20.4, 2.22.2, and 3.0 Security Advisory (Mozilla)