Percona XtraBackup before 2.1.6 uses a constant string for the initialization vector (IV), which makes it easier for local users to defeat cryptographic protection mechanisms and conduct plaintext attacks.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Xtrabackup | Percona | * | 2.1.5 (including) |
Xtrabackup | Percona | 2.1.0-alpha1 (including) | 2.1.0-alpha1 (including) |
Xtrabackup | Percona | 2.1.0-beta1 (including) | 2.1.0-beta1 (including) |
Xtrabackup | Percona | 2.1.0-rc1 (including) | 2.1.0-rc1 (including) |
Xtrabackup | Percona | 2.1.1 (including) | 2.1.1 (including) |
Xtrabackup | Percona | 2.1.2 (including) | 2.1.2 (including) |
Xtrabackup | Percona | 2.1.3 (including) | 2.1.3 (including) |
Xtrabackup | Percona | 2.1.4 (including) | 2.1.4 (including) |
Percona-xtrabackup | Ubuntu | saucy | * |
Percona-xtrabackup | Ubuntu | upstream | * |