CVE Vulnerabilities

CVE-2010-2756

Published: Aug 16, 2010 | Modified: Sep 08, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Search.pm in Bugzilla 2.19.1 through 3.2.7, 3.3.1 through 3.4.7, 3.5.1 through 3.6.1, and 3.7 through 3.7.2 allows remote attackers to determine the group memberships of arbitrary users via vectors involving the Search interface, boolean charts, and group-based pronouns.

Affected Software

Name Vendor Start Version End Version
Bugzilla Mozilla 2.2 (including) 2.2 (including)
Bugzilla Mozilla 2.4 (including) 2.4 (including)
Bugzilla Mozilla 2.6 (including) 2.6 (including)
Bugzilla Mozilla 2.8 (including) 2.8 (including)
Bugzilla Mozilla 2.9 (including) 2.9 (including)
Bugzilla Mozilla 2.19.1 (including) 2.19.1 (including)
Bugzilla Mozilla 2.19.2 (including) 2.19.2 (including)
Bugzilla Mozilla 2.19.3 (including) 2.19.3 (including)
Bugzilla Mozilla 2.20 (including) 2.20 (including)
Bugzilla Mozilla 2.20-rc1 (including) 2.20-rc1 (including)
Bugzilla Mozilla 2.20-rc2 (including) 2.20-rc2 (including)
Bugzilla Mozilla 2.20.1 (including) 2.20.1 (including)
Bugzilla Mozilla 2.20.2 (including) 2.20.2 (including)
Bugzilla Mozilla 2.20.3 (including) 2.20.3 (including)
Bugzilla Mozilla 2.20.4 (including) 2.20.4 (including)
Bugzilla Mozilla 2.20.5 (including) 2.20.5 (including)
Bugzilla Mozilla 2.20.6 (including) 2.20.6 (including)
Bugzilla Mozilla 2.20.7 (including) 2.20.7 (including)
Bugzilla Mozilla 2.21 (including) 2.21 (including)
Bugzilla Mozilla 2.21.1 (including) 2.21.1 (including)
Bugzilla Mozilla 2.21.2 (including) 2.21.2 (including)
Bugzilla Mozilla 2.22 (including) 2.22 (including)
Bugzilla Mozilla 2.22-rc1 (including) 2.22-rc1 (including)
Bugzilla Mozilla 2.22.1 (including) 2.22.1 (including)
Bugzilla Mozilla 2.22.3 (including) 2.22.3 (including)
Bugzilla Mozilla 2.22.4 (including) 2.22.4 (including)
Bugzilla Mozilla 2.22.5 (including) 2.22.5 (including)
Bugzilla Mozilla 2.22.6 (including) 2.22.6 (including)
Bugzilla Mozilla 2.22.7 (including) 2.22.7 (including)
Bugzilla Mozilla 2.23 (including) 2.23 (including)
Bugzilla Mozilla 2.23.1 (including) 2.23.1 (including)
Bugzilla Mozilla 2.23.2 (including) 2.23.2 (including)
Bugzilla Mozilla 2.23.3 (including) 2.23.3 (including)
Bugzilla Mozilla 2.23.4 (including) 2.23.4 (including)
Bugzilla Mozilla 3.0 (including) 3.0 (including)
Bugzilla Mozilla 3.0-rc1 (including) 3.0-rc1 (including)
Bugzilla Mozilla 3.0.0 (including) 3.0.0 (including)
Bugzilla Mozilla 3.0.1 (including) 3.0.1 (including)
Bugzilla Mozilla 3.0.2 (including) 3.0.2 (including)
Bugzilla Mozilla 3.0.3 (including) 3.0.3 (including)
Bugzilla Mozilla 3.0.4 (including) 3.0.4 (including)
Bugzilla Mozilla 3.0.5 (including) 3.0.5 (including)
Bugzilla Mozilla 3.0.6 (including) 3.0.6 (including)
Bugzilla Mozilla 3.0.7 (including) 3.0.7 (including)
Bugzilla Mozilla 3.0.8 (including) 3.0.8 (including)
Bugzilla Mozilla 3.0.9 (including) 3.0.9 (including)
Bugzilla Mozilla 3.0.10 (including) 3.0.10 (including)
Bugzilla Mozilla 3.0.11 (including) 3.0.11 (including)
Bugzilla Mozilla 3.1.0 (including) 3.1.0 (including)
Bugzilla Mozilla 3.1.1 (including) 3.1.1 (including)
Bugzilla Mozilla 3.1.2 (including) 3.1.2 (including)
Bugzilla Mozilla 3.1.3 (including) 3.1.3 (including)
Bugzilla Mozilla 3.2 (including) 3.2 (including)
Bugzilla Mozilla 3.2.2 (including) 3.2.2 (including)
Bugzilla Mozilla 3.2.3 (including) 3.2.3 (including)
Bugzilla Mozilla 3.2.4 (including) 3.2.4 (including)
Bugzilla Mozilla 3.2.5 (including) 3.2.5 (including)
Bugzilla Mozilla 3.2.6 (including) 3.2.6 (including)
Bugzilla Mozilla 3.2.7 (including) 3.2.7 (including)
Bugzilla Mozilla 3.3.1 (including) 3.3.1 (including)
Bugzilla Mozilla 3.3.2 (including) 3.3.2 (including)
Bugzilla Mozilla 3.3.3 (including) 3.3.3 (including)
Bugzilla Mozilla 3.3.4 (including) 3.3.4 (including)
Bugzilla Mozilla 3.4.1 (including) 3.4.1 (including)
Bugzilla Mozilla 3.4.2 (including) 3.4.2 (including)
Bugzilla Mozilla 3.4.3 (including) 3.4.3 (including)
Bugzilla Mozilla 3.4.4 (including) 3.4.4 (including)
Bugzilla Mozilla 3.4.5 (including) 3.4.5 (including)
Bugzilla Mozilla 3.4.6 (including) 3.4.6 (including)
Bugzilla Mozilla 3.4.7 (including) 3.4.7 (including)
Bugzilla Mozilla 3.5.1 (including) 3.5.1 (including)
Bugzilla Mozilla 3.5.2 (including) 3.5.2 (including)
Bugzilla Mozilla 3.5.3 (including) 3.5.3 (including)
Bugzilla Mozilla 3.6 (including) 3.6 (including)
Bugzilla Mozilla 3.6.1 (including) 3.6.1 (including)
Bugzilla Mozilla 3.7 (including) 3.7 (including)
Bugzilla Mozilla 3.7.1 (including) 3.7.1 (including)
Bugzilla Mozilla 3.7.2 (including) 3.7.2 (including)

References