MGASA-2021-0520 - Updated couchdb packages fix security vulnerability

Publication date: 25 Nov 2021
URL: https://advisories.mageia.org/MGASA-2021-0520.html
Type: security
Affected Mageia releases: 8
CVE: CVE-2021-38295

Privilege escalation that allows an attacker to add or remove data in any
database or make configuration changes. (CVE-2021-38295)

References:
- https://bugs.mageia.org/show_bug.cgi?id=29548
- https://www.openwall.com/lists/oss-security/2021/10/12/2
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-38295

SRPMS:
- 8/core/couchdb-3.1.2-1.mga8

Mageia 2021-0520: couchdb security update

Privilege escalation that allows an attacker to add or remove data in any database or make configuration changes

Summary

Privilege escalation that allows an attacker to add or remove data in any database or make configuration changes. (CVE-2021-38295)

References

- https://bugs.mageia.org/show_bug.cgi?id=29548

- https://www.openwall.com/lists/oss-security/2021/10/12/2

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-38295

Resolution

MGASA-2021-0520 - Updated couchdb packages fix security vulnerability

SRPMS

- 8/core/couchdb-3.1.2-1.mga8

Severity
Publication date: 25 Nov 2021
URL: https://advisories.mageia.org/MGASA-2021-0520.html
Type: security
CVE: CVE-2021-38295

Related News