LWN.net Logo

mariadb: password brute-force vulnerability

Package(s):mariadb CVE #(s):CVE-2012-5627
Created:February 10, 2013 Updated:February 13, 2013
Description: The mariadb COM_CHANGE_USER operation fails to abort the session when an incorrect password is supplied, enabling many passwords to be tried in quick succession.
Alerts:
Mageia MGASA-2013-0046 2013-02-09

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds