CVE-2019-9708: Medium severity mahara vulnerability
Published May 7, 2019
·Updated
An issue was discovered in Mahara 17.10 before 17.10.8, 18.04 before 18.04.4, and 18.10 before 18.10.1. A site administrator can suspend the system user (root), causing all users to be locked out from the system.
Affected Software
3 affected components
Mahara Mahara>=17.10.0<17.10.8
Mahara Mahara>=18.04.0<18.04.4
Mahara Mahara>=18.10.0<18.10.1
Event History
May 7, 2019
CVE Published
via MITRE·04:53 PM
Data Sourced
via MITRE·04:53 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-9708.
2
What is the severity of CVE-2019-9708?
The severity of CVE-2019-9708 is medium.
3
How does CVE-2019-9708 impact Mahara?
CVE-2019-9708 allows a site administrator to suspend the system user (root), causing all users to be locked out from the system.
4
Which versions of Mahara are affected by CVE-2019-9708?
Mahara versions 17.10 before 17.10.8, 18.04 before 18.04.4, and 18.10 before 18.10.1 are affected by CVE-2019-9708.
5
How can the CVE-2019-9708 vulnerability be mitigated?
To mitigate the CVE-2019-9708 vulnerability, update Mahara to version 17.10.8, 18.04.4, or 18.10.1 or later.