Unrated severityNVD Advisory· Published Oct 10, 2012· Updated Apr 29, 2026
CVE-2012-4430
CVE-2012-4430
Description
The dump_resource function in dird/dird_conf.c in Bacula before 5.2.11 does not properly enforce ACL rules, which allows remote authenticated users to obtain resource dump information via unspecified vectors.
Affected products
3cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- www.bacula.org/git/cgit.cgi/bacula/commit/nvdPatchVendor Advisory
- secunia.com/advisories/50535nvdThird Party Advisory
- secunia.com/advisories/50808nvdThird Party Advisory
- sourceforge.net/projects/bacula/files/bacula/5.2.12/ReleaseNotes/viewnvdThird Party Advisory
- www.bacula.org/en/nvdVendor Advisory
- www.debian.org/security/2012/dsa-2558nvdThird Party Advisory
- www.mandriva.com/security/advisoriesnvdThird Party Advisory
- www.openwall.com/lists/oss-security/2012/09/14/11nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2012/09/14/12nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2012/09/15/2nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/55505nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.