ubuntu · CVE-2005-2174

Quick triage

Priority: medium Published: 2005-07-08 04:00:00 UTC Updated: 2025-07-17 16:36:03 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2005-2174 medium priority: Ubuntu including 1 source packages (bugzilla), 4 status rows across 4 suites (dapper, edgy, feisty, upstream): not-affected 3, needs-triage 1.

Description:

Bugzilla 2.17.x, 2.18 before 2.18.2, 2.19.x, and 2.20 before 2.20rc1 inserts a bug into the database before it is marked private, which introduces a race condition and allows attackers to access information about the bug via buglist.cgi before MySQL replication is complete.

cvelogic Threat Intelligence