Vulnerabilities > CVE-2012-5642 - Arbitrary Log Content Injection vulnerability in Fail2ban

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
fail2ban
nessus

Summary

server/action.py in Fail2ban before 0.8.8 does not properly handle the content of the matches tag, which might allow remote attackers to trigger unsafe behavior in a custom action file via unspecified symbols in this content.

Nessus

  • NASL familySuSE Local Security Checks
    NASL idOPENSUSE-2013-267.NASL
    descriptionThis update of fail2ban fixes a startup related startup-problem and a security problem fixed upstream (CVE-2012-5642).
    last seen2020-06-05
    modified2014-06-13
    plugin id74950
    published2014-06-13
    reporterThis script is Copyright (C) 2014-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/74950
    titleopenSUSE Security Update : fail2ban (openSUSE-SU-2013:0566-1)
  • NASL familyMandriva Local Security Checks
    NASL idMANDRIVA_MDVSA-2013-078.NASL
    descriptionUpdated fail2ban package fixes security vulnerability : fail2ban before 0.8.8 didn
    last seen2020-06-01
    modified2020-06-02
    plugin id66092
    published2013-04-20
    reporterThis script is Copyright (C) 2013-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/66092
    titleMandriva Linux Security Advisory : fail2ban (MDVSA-2013:078)
  • NASL familyFedora Local Security Checks
    NASL idFEDORA_2012-20589.NASL
    descriptionUpdate to 0.8.8 (CVE-2012-5642 Bug #887914) - Fixes : - Alan Jenkins - [8c38907] Removed
    last seen2020-03-17
    modified2013-01-14
    plugin id63496
    published2013-01-14
    reporterThis script is Copyright (C) 2013-2020 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/63496
    titleFedora 18 : fail2ban-0.8.8-1.fc18 (2012-20589)
  • NASL familyFedora Local Security Checks
    NASL idFEDORA_2012-20619.NASL
    descriptionUpdate to 0.8.8 (CVE-2012-5642 Bug #887914) - Fixes : - Alan Jenkins - [8c38907] Removed
    last seen2020-03-17
    modified2012-12-28
    plugin id63343
    published2012-12-28
    reporterThis script is Copyright (C) 2012-2020 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/63343
    titleFedora 17 : fail2ban-0.8.8-1.fc17 (2012-20619)