A Security Bypass vulnerability exists in Ubuntu Cobbler before 2,2,2 in the cobbler-ubuntu-import script due to an error when verifying the GPG signature.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
Link | Tags |
---|---|
https://security-tracker.debian.org/tracker/CVE-2012-2092 | third party advisory |
http://www.securityfocus.com/bid/52971 | vdb entry third party advisory |
http://www.openwall.com/lists/oss-security/2012/04/10/14 | mailing list patch exploit third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/74789 | vdb entry third party advisory |