Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Paros HSQLDB Remote Authentication Bypass Vulnerability

Solution:

The vendor has released version 3.2.7 to address this issue. Version 3.2.7 uses the database in-process, and remote/localhost access is no longer possible.

Gentoo Linux has released security advisory GLSA 200601-15 addressing this issue. Gentoo recommends that all Paros users upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose ">=net-proxy/paros-3.2.8"


Paros Paros 3.2.5

Paros Paros 3.2.6







 

Privacy Statement
Copyright 2008, SecurityFocus