Back to search
CVE-2011-4349
Published: Dec 10, 2011
Modified: Sep 17, 2024
PUBLISHED
Description
Multiple SQL injection vulnerabilities in (1) cd-mapping-db.c and (2) cd-device-db.c in colord before 0.1.15 allow local users to execute arbitrary SQL commands via vectors related to color devices and (a) device id, (b) property, or (c) profile id.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
50814
vdb-entry
x_refsource_BID
USN-1289-1
vendor-advisory
x_refsource_UBUNTU
46940
third-party-advisory
x_refsource_SECUNIA
[oss-security] 20111125 Re: CVE Request: colord sql injections
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=757171
x_refsource_MISC
47160
third-party-advisory
x_refsource_SECUNIA
FEDORA-2011-16451
vendor-advisory
x_refsource_FEDORA
https://bugs.freedesktop.org/show_bug.cgi?id=42904
x_refsource_CONFIRM
FEDORA-2011-16453
vendor-advisory
x_refsource_FEDORA
[oss-security] 20111125 Re: CVE Request: colord sql injections
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now