CVE Vulnerabilities

CVE-2013-6394

Published: Dec 13, 2013 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Percona XtraBackup before 2.1.6 uses a constant string for the initialization vector (IV), which makes it easier for local users to defeat cryptographic protection mechanisms and conduct plaintext attacks.

Affected Software

Name Vendor Start Version End Version
Xtrabackup Percona * 2.1.5 (including)
Xtrabackup Percona 2.1.0-alpha1 (including) 2.1.0-alpha1 (including)
Xtrabackup Percona 2.1.0-beta1 (including) 2.1.0-beta1 (including)
Xtrabackup Percona 2.1.0-rc1 (including) 2.1.0-rc1 (including)
Xtrabackup Percona 2.1.1 (including) 2.1.1 (including)
Xtrabackup Percona 2.1.2 (including) 2.1.2 (including)
Xtrabackup Percona 2.1.3 (including) 2.1.3 (including)
Xtrabackup Percona 2.1.4 (including) 2.1.4 (including)
Percona-xtrabackup Ubuntu saucy *
Percona-xtrabackup Ubuntu upstream *

References