Wind River Support Network

HomeDefectsLIN6-12070
Fixed

LIN6-12070 : Security Advisory - phpmyadmin - CVE-2016-6624

Created: Dec 15, 2016    Updated: Dec 3, 2018
Resolved Date: Dec 27, 2016
Found In Version: 6.0.0.31
Fix Version: 6.0.0.32
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Userspace

Description

An issue was discovered in phpMyAdmin involving improper enforcement of the IP-based authentication rules. When phpMyAdmin is used with IPv6 in a proxy server environment, and the proxy server is in the allowed range but the attacking computer is not allowed, this vulnerability can allow the attacking computer to connect despite the IP rules. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-6624

Other Downloads


Live chat
Online