CVE Vulnerabilities

CVE-2012-5642

Published: Dec 31, 2012 | Modified: Dec 05, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

server/action.py in Fail2ban before 0.8.8 does not properly handle the content of the matches tag, which might allow remote attackers to trigger unsafe behavior in a custom action file via unspecified symbols in this content.

Affected Software

Name Vendor Start Version End Version
Fail2ban Fail2ban * 0.8.7.1 (including)
Fail2ban Fail2ban 0.1.0 (including) 0.1.0 (including)
Fail2ban Fail2ban 0.1.1 (including) 0.1.1 (including)
Fail2ban Fail2ban 0.1.2 (including) 0.1.2 (including)
Fail2ban Fail2ban 0.3.0 (including) 0.3.0 (including)
Fail2ban Fail2ban 0.3.1 (including) 0.3.1 (including)
Fail2ban Fail2ban 0.4.0 (including) 0.4.0 (including)
Fail2ban Fail2ban 0.4.1 (including) 0.4.1 (including)
Fail2ban Fail2ban 0.5.0 (including) 0.5.0 (including)
Fail2ban Fail2ban 0.5.1 (including) 0.5.1 (including)
Fail2ban Fail2ban 0.5.2 (including) 0.5.2 (including)
Fail2ban Fail2ban 0.5.3 (including) 0.5.3 (including)
Fail2ban Fail2ban 0.5.4 (including) 0.5.4 (including)
Fail2ban Fail2ban 0.5.5 (including) 0.5.5 (including)
Fail2ban Fail2ban 0.6.0 (including) 0.6.0 (including)
Fail2ban Fail2ban 0.6.1 (including) 0.6.1 (including)
Fail2ban Fail2ban 0.7.0 (including) 0.7.0 (including)
Fail2ban Fail2ban 0.7.1 (including) 0.7.1 (including)
Fail2ban Fail2ban 0.7.2 (including) 0.7.2 (including)
Fail2ban Fail2ban 0.7.3 (including) 0.7.3 (including)
Fail2ban Fail2ban 0.7.4 (including) 0.7.4 (including)
Fail2ban Fail2ban 0.7.5 (including) 0.7.5 (including)
Fail2ban Fail2ban 0.7.6 (including) 0.7.6 (including)
Fail2ban Fail2ban 0.7.7 (including) 0.7.7 (including)
Fail2ban Fail2ban 0.7.8 (including) 0.7.8 (including)
Fail2ban Fail2ban 0.7.9 (including) 0.7.9 (including)
Fail2ban Fail2ban 0.8.0 (including) 0.8.0 (including)
Fail2ban Fail2ban 0.8.1 (including) 0.8.1 (including)
Fail2ban Fail2ban 0.8.2 (including) 0.8.2 (including)
Fail2ban Fail2ban 0.8.3 (including) 0.8.3 (including)
Fail2ban Fail2ban 0.8.4 (including) 0.8.4 (including)
Fail2ban Fail2ban 0.8.5 (including) 0.8.5 (including)
Fail2ban Fail2ban 0.8.6 (including) 0.8.6 (including)
Fail2ban Fail2ban 0.8.7 (including) 0.8.7 (including)
Fail2ban Ubuntu hardy *
Fail2ban Ubuntu lucid *
Fail2ban Ubuntu oneiric *
Fail2ban Ubuntu precise *
Fail2ban Ubuntu quantal *
Fail2ban Ubuntu raring *
Fail2ban Ubuntu upstream *

References