Candidate: CVE-2013-6394 PublicDate: 2013-12-13 18:07:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6394 Description: Percona XtraBackup before 2.1.6 uses a constant string for the initialization vector (IV), which makes it easier for local users to defeat cryptographic protection mechanisms and conduct plaintext attacks. Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=730544 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_percona-xtrabackup: upstream_percona-xtrabackup: released (2.1.6) lucid_percona-xtrabackup: DNE precise_percona-xtrabackup: DNE quantal_percona-xtrabackup: DNE raring_percona-xtrabackup: DNE saucy_percona-xtrabackup: ignored (reached end-of-life) trusty_percona-xtrabackup: not-affected (2.1.8-1) trusty/esm_percona-xtrabackup: DNE (trusty was not-affected [2.1.8-1]) devel_percona-xtrabackup: not-affected (2.1.8-1)