Search CVE reports


Toggle filters

1 – 6 of 6 results


CVE-2024-45044

Medium priority
Needs evaluation

Bareos is open source software for backup, archiving, and recovery of data for operating systems. When a command ACL is in place and a user executes a command in bconsole using an abbreviation (i.e. "w" for "whoami") the ACL check...

1 affected package

bareos

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bareos Not in release Not in release Not in release
Show less packages

CVE-2022-24756

Low priority
Vulnerable

Bareos is open source software for backup, archiving, and recovery of data for operating systems. When Bareos Director >= 18.2 but prior to 21.1.0, 20.0.6, and 19.2.12 is built and configured for PAM authentication, a failed PAM...

1 affected package

bareos

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bareos
Show less packages

CVE-2022-24755

Low priority
Vulnerable

Bareos is open source software for backup, archiving, and recovery of data for operating systems. When Bareos Director >= 18.2 >= 18.2 but prior to 21.1.0, 20.0.6, and 19.2.12 is built and configured for PAM authentication, it...

1 affected package

bareos

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bareos
Show less packages

CVE-2020-4042

Medium priority
Vulnerable

Bareos before version 19.2.8 and earlier allows a malicious client to communicate with the director without knowledge of the shared secret if the director allows client initiated connection and connects to the client itself. The...

1 affected package

bareos

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bareos Not in release Not in release Not in release Not in release
Show less packages

CVE-2020-11061

Medium priority
Needs evaluation

In Bareos Director less than or equal to 16.2.10, 17.2.9, 18.2.8, and 19.2.7, a heap overflow allows a malicious client to corrupt the director's memory via oversized digest strings sent during initialization of a verify job....

2 affected packages

bacula, bareos

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bacula Not affected Needs evaluation Needs evaluation
bareos Not in release Not in release Not in release Not in release
Show less packages

CVE-2017-14610

Medium priority
Vulnerable

bareos-dir, bareos-fd, and bareos-sd in bareos-core in Bareos 16.2.6 and earlier create a PID file after dropping privileges to a non-root account, which might allow local users to kill arbitrary processes by leveraging access to...

1 affected package

bareos

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bareos Not in release Not in release Not in release Not in release
Show less packages