View at Official ubuntu advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2012-5884 medium priority: Ubuntu including 1 source packages (bugzilla), 6 status rows across 6 suites (hardy, lucid, oneiric, precise, quantal, upstream): DNE 2, not-affected 2, ignored 1, needs-triage 1.
The User.get method in Bugzilla/WebService/User.pm in Bugzilla 4.3.2 allows remote attackers to obtain sensitive information about the saved searches of arbitrary users via an XMLRPC request or a JSONRPC request, a different vulnerability than CVE-2012-4198.