{"cves":[{"id":"CVE-2017-6463","published":"2017-03-27T00:00:00","updated_at":"2025-08-25T22:36:16.604720+00:00","description":"\nNTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote authenticated\nusers to cause a denial of service (daemon crash) via an invalid setting in\na :config directive, related to the unpeer option.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":6.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":6.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3349-1","https://ubuntu.com/security/notices/USN-3707-2","https://www.cve.org/CVERecord?id=CVE-2017-6463"],"bugs":["http://support.ntp.org/bin/view/Main/NtpBug3387","http://bugs.ntp.org/show_bug.cgi?id=3387"],"patches":{"ntp":["upstream: http://bk1.ntp.org/ntp-stable/?PAGE=cset&REV=58a03410Wgv3k8FUIty8KGhffw-O4Q"]},"tags":{},"packages":[{"name":"ntp","source":"https://ubuntu.com/security/cve?package=ntp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ntp","debian":"https://tracker.debian.org/pkg/ntp","statuses":[{"release_codename":"artful","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:4.2.8p4+dfsg-3ubuntu5.5","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1:4.2.8p8+dfsg-1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1:4.2.8p9+dfsg-2ubuntu1.1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3707-2","USN-3349-1"],"notices":[{"id":"USN-3707-2","title":"NTP vulnerabilities","summary":"Several security issues were fixed in NTP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2019-01-23T13:39:50.475809","description":"USN-3707-1 and USN-3349-1 fixed several vulnerabilities in NTP. This update\nprovides the corresponding update for Ubuntu 12.04 ESM.\n\nOriginal advisory details:\n\n Miroslav Lichvar discovered that NTP incorrectly handled certain spoofed\n addresses when performing rate limiting. A remote attacker could possibly\n use this issue to perform a denial of service. (CVE-2016-7426)\n\n Matthew Van Gundy discovered that NTP incorrectly handled certain crafted\n broadcast mode packets. A remote attacker could possibly use this issue to\n perform a denial of service. (CVE-2016-7427, CVE-2016-7428)\n\n Matthew Van Gundy discovered that NTP incorrectly handled certain control\n mode packets. A remote attacker could use this issue to set or unset traps.\n (CVE-2016-9310)\n\n Matthew Van Gundy discovered that NTP incorrectly handled the trap service.\n A remote attacker could possibly use this issue to cause NTP to crash, resulting\n in a denial of service. (CVE-2016-9311)\n\n It was discovered that the NTP legacy DPTS refclock driver incorrectly handled\n the /dev/datum device. A local attacker could possibly use this issue to cause\n a denial of service. (CVE-2017-6462)\n\n It was discovered that NTP incorrectly handled certain invalid settings in a\n :config directive. A remote authenticated user could possibly use this issue\n to cause NTP to crash, resulting in a denial of service. (CVE-2017-6463)\n\n Michael Macnair discovered that NTP incorrectly handled certain responses.\n A remote attacker could possibly use this issue to execute arbitrary code.\n (CVE-2018-7183)\n\n Miroslav Lichvar discovered that NTP incorrectly handled certain\n zero-origin timestamps. A remote attacker could possibly use this issue to\n cause a denial of service. (CVE-2018-7185)\n","is_hidden":false,"release_packages":{"precise":[{"name":"ntp","version":"1:4.2.6.p3+dfsg-1ubuntu3.12","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.6.p3+dfsg-1ubuntu3.12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p3+dfsg-1ubuntu3.12"}]},"type":"USN","cves_ids":["CVE-2016-7426","CVE-2016-7427","CVE-2016-7428","CVE-2016-9310","CVE-2016-9311","CVE-2017-6462","CVE-2017-6463","CVE-2018-7183","CVE-2018-7185"]},{"id":"USN-3349-1","title":"NTP vulnerabilities","summary":"Several security issues were fixed in NTP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2017-07-05T18:19:15.698112","description":"Yihan Lian discovered that NTP incorrectly handled certain large request\ndata values. A remote attacker could possibly use this issue to cause NTP\nto crash, resulting in a denial of service. This issue only affected\nUbuntu 16.04 LTS. (CVE-2016-2519)\n\nMiroslav Lichvar discovered that NTP incorrectly handled certain spoofed\naddresses when performing rate limiting. A remote attacker could possibly\nuse this issue to perform a denial of service. This issue only affected\nUbuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-7426)\n\nMatthew Van Gundy discovered that NTP incorrectly handled certain crafted\nbroadcast mode packets. A remote attacker could possibly use this issue to\nperform a denial of service. This issue only affected Ubuntu 14.04 LTS,\nUbuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-7427, CVE-2016-7428)\n\nMiroslav Lichvar discovered that NTP incorrectly handled certain responses.\nA remote attacker could possibly use this issue to perform a denial of\nservice. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and\nUbuntu 16.10. (CVE-2016-7429)\n\nSharon Goldberg and Aanchal Malhotra discovered that NTP incorrectly\nhandled origin timestamps of zero. A remote attacker could possibly use\nthis issue to bypass the origin timestamp protection mechanism. This issue\nonly affected Ubuntu 16.10. (CVE-2016-7431)\n\nBrian Utterback, Sharon Goldberg and Aanchal Malhotra discovered that NTP\nincorrectly performed initial sync calculations. This issue only applied\nto Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7433)\n\nMagnus Stubman discovered that NTP incorrectly handled certain mrulist\nqueries. A remote attacker could possibly use this issue to cause NTP to\ncrash, resulting in a denial of service. This issue only affected Ubuntu\n16.04 LTS and Ubuntu 16.10. (CVE-2016-7434)\n\nMatthew Van Gund discovered that NTP incorrectly handled origin timestamp\nchecks. A remote attacker could possibly use this issue to perform a denial\nof service. This issue only affected Ubuntu Ubuntu 16.10, and Ubuntu 17.04.\n(CVE-2016-9042)\n\nMatthew Van Gundy discovered that NTP incorrectly handled certain control\nmode packets. A remote attacker could use this issue to set or unset traps.\nThis issue only applied to Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu\n16.10. (CVE-2016-9310)\n\nMatthew Van Gundy discovered that NTP incorrectly handled the trap service.\nA remote attacker could possibly use this issue to cause NTP to crash,\nresulting in a denial of service. This issue only applied to Ubuntu 14.04\nLTS, Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-9311)\n\nIt was discovered that NTP incorrectly handled memory when processing long\nvariables. A remote authenticated user could possibly use this issue to\ncause NTP to crash, resulting in a denial of service. (CVE-2017-6458)\n\nIt was discovered that NTP incorrectly handled memory when processing long\nvariables. A remote authenticated user could possibly use this issue to\ncause NTP to crash, resulting in a denial of service. This issue only\napplied to Ubuntu 16.04 LTS, Ubuntu 16.10 and Ubuntu 17.04. (CVE-2017-6460)\n\nIt was discovered that the NTP legacy DPTS refclock driver incorrectly\nhandled the /dev/datum device. A local attacker could possibly use this\nissue to cause a denial of service. (CVE-2017-6462)\n\nIt was discovered that NTP incorrectly handled certain invalid settings\nin a :config directive. A remote authenticated user could possibly use\nthis issue to cause NTP to crash, resulting in a denial of service.\n(CVE-2017-6463)\n\nIt was discovered that NTP incorrectly handled certain invalid mode\nconfiguration directives. A remote authenticated user could possibly use\nthis issue to cause NTP to crash, resulting in a denial of service.\n(CVE-2017-6464)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"ntp","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"},{"name":"ntp-doc","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"},{"name":"ntpdate","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"}],"xenial":[{"name":"ntp","version":"1:4.2.8p4+dfsg-3ubuntu5.5","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"},{"name":"ntp-doc","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"},{"name":"ntpdate","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"}],"yakkety":[{"name":"ntp","version":"1:4.2.8p8+dfsg-1ubuntu2.1","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p8+dfsg-1ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p8+dfsg-1ubuntu2.1"}],"zesty":[{"name":"ntp","version":"1:4.2.8p9+dfsg-2ubuntu1.1","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p9+dfsg-2ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p9+dfsg-2ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2016-2519","CVE-2016-7426","CVE-2016-7427","CVE-2016-7428","CVE-2016-7429","CVE-2016-7431","CVE-2016-7433","CVE-2016-7434","CVE-2016-9042","CVE-2016-9310","CVE-2016-9311","CVE-2017-6458","CVE-2017-6460","CVE-2017-6462","CVE-2017-6463","CVE-2017-6464"]}]},{"id":"CVE-2017-6462","published":"2017-03-27T00:00:00","updated_at":"2025-08-25T22:36:16.604720+00:00","description":"\nBuffer overflow in the legacy Datum Programmable Time Server (DPTS)\nrefclock driver in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local\nusers to have unspecified impact via a crafted /dev/datum device.","ubuntu_description":"","notes":[],"codename":null,"priority":"negligible","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3349-1","https://ubuntu.com/security/notices/USN-3707-2","https://www.cve.org/CVERecord?id=CVE-2017-6462"],"bugs":["http://support.ntp.org/bin/view/Main/NtpBug3388"],"patches":{"ntp":["upstream: http://bk1.ntp.org/ntp-stable/?PAGE=cset&REV=58a0592bal7oYBqUMCqId4WgiuiOqw"]},"tags":{},"packages":[{"name":"ntp","source":"https://ubuntu.com/security/cve?package=ntp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ntp","debian":"https://tracker.debian.org/pkg/ntp","statuses":[{"release_codename":"artful","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:4.2.8p4+dfsg-3ubuntu5.5","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1:4.2.8p8+dfsg-1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1:4.2.8p9+dfsg-2ubuntu1.1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3707-2","USN-3349-1"],"notices":[{"id":"USN-3707-2","title":"NTP vulnerabilities","summary":"Several security issues were fixed in NTP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2019-01-23T13:39:50.475809","description":"USN-3707-1 and USN-3349-1 fixed several vulnerabilities in NTP. This update\nprovides the corresponding update for Ubuntu 12.04 ESM.\n\nOriginal advisory details:\n\n Miroslav Lichvar discovered that NTP incorrectly handled certain spoofed\n addresses when performing rate limiting. A remote attacker could possibly\n use this issue to perform a denial of service. (CVE-2016-7426)\n\n Matthew Van Gundy discovered that NTP incorrectly handled certain crafted\n broadcast mode packets. A remote attacker could possibly use this issue to\n perform a denial of service. (CVE-2016-7427, CVE-2016-7428)\n\n Matthew Van Gundy discovered that NTP incorrectly handled certain control\n mode packets. A remote attacker could use this issue to set or unset traps.\n (CVE-2016-9310)\n\n Matthew Van Gundy discovered that NTP incorrectly handled the trap service.\n A remote attacker could possibly use this issue to cause NTP to crash, resulting\n in a denial of service. (CVE-2016-9311)\n\n It was discovered that the NTP legacy DPTS refclock driver incorrectly handled\n the /dev/datum device. A local attacker could possibly use this issue to cause\n a denial of service. (CVE-2017-6462)\n\n It was discovered that NTP incorrectly handled certain invalid settings in a\n :config directive. A remote authenticated user could possibly use this issue\n to cause NTP to crash, resulting in a denial of service. (CVE-2017-6463)\n\n Michael Macnair discovered that NTP incorrectly handled certain responses.\n A remote attacker could possibly use this issue to execute arbitrary code.\n (CVE-2018-7183)\n\n Miroslav Lichvar discovered that NTP incorrectly handled certain\n zero-origin timestamps. A remote attacker could possibly use this issue to\n cause a denial of service. (CVE-2018-7185)\n","is_hidden":false,"release_packages":{"precise":[{"name":"ntp","version":"1:4.2.6.p3+dfsg-1ubuntu3.12","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.6.p3+dfsg-1ubuntu3.12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p3+dfsg-1ubuntu3.12"}]},"type":"USN","cves_ids":["CVE-2016-7426","CVE-2016-7427","CVE-2016-7428","CVE-2016-9310","CVE-2016-9311","CVE-2017-6462","CVE-2017-6463","CVE-2018-7183","CVE-2018-7185"]},{"id":"USN-3349-1","title":"NTP vulnerabilities","summary":"Several security issues were fixed in NTP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2017-07-05T18:19:15.698112","description":"Yihan Lian discovered that NTP incorrectly handled certain large request\ndata values. A remote attacker could possibly use this issue to cause NTP\nto crash, resulting in a denial of service. This issue only affected\nUbuntu 16.04 LTS. (CVE-2016-2519)\n\nMiroslav Lichvar discovered that NTP incorrectly handled certain spoofed\naddresses when performing rate limiting. A remote attacker could possibly\nuse this issue to perform a denial of service. This issue only affected\nUbuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-7426)\n\nMatthew Van Gundy discovered that NTP incorrectly handled certain crafted\nbroadcast mode packets. A remote attacker could possibly use this issue to\nperform a denial of service. This issue only affected Ubuntu 14.04 LTS,\nUbuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-7427, CVE-2016-7428)\n\nMiroslav Lichvar discovered that NTP incorrectly handled certain responses.\nA remote attacker could possibly use this issue to perform a denial of\nservice. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and\nUbuntu 16.10. (CVE-2016-7429)\n\nSharon Goldberg and Aanchal Malhotra discovered that NTP incorrectly\nhandled origin timestamps of zero. A remote attacker could possibly use\nthis issue to bypass the origin timestamp protection mechanism. This issue\nonly affected Ubuntu 16.10. (CVE-2016-7431)\n\nBrian Utterback, Sharon Goldberg and Aanchal Malhotra discovered that NTP\nincorrectly performed initial sync calculations. This issue only applied\nto Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7433)\n\nMagnus Stubman discovered that NTP incorrectly handled certain mrulist\nqueries. A remote attacker could possibly use this issue to cause NTP to\ncrash, resulting in a denial of service. This issue only affected Ubuntu\n16.04 LTS and Ubuntu 16.10. (CVE-2016-7434)\n\nMatthew Van Gund discovered that NTP incorrectly handled origin timestamp\nchecks. A remote attacker could possibly use this issue to perform a denial\nof service. This issue only affected Ubuntu Ubuntu 16.10, and Ubuntu 17.04.\n(CVE-2016-9042)\n\nMatthew Van Gundy discovered that NTP incorrectly handled certain control\nmode packets. A remote attacker could use this issue to set or unset traps.\nThis issue only applied to Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu\n16.10. (CVE-2016-9310)\n\nMatthew Van Gundy discovered that NTP incorrectly handled the trap service.\nA remote attacker could possibly use this issue to cause NTP to crash,\nresulting in a denial of service. This issue only applied to Ubuntu 14.04\nLTS, Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-9311)\n\nIt was discovered that NTP incorrectly handled memory when processing long\nvariables. A remote authenticated user could possibly use this issue to\ncause NTP to crash, resulting in a denial of service. (CVE-2017-6458)\n\nIt was discovered that NTP incorrectly handled memory when processing long\nvariables. A remote authenticated user could possibly use this issue to\ncause NTP to crash, resulting in a denial of service. This issue only\napplied to Ubuntu 16.04 LTS, Ubuntu 16.10 and Ubuntu 17.04. (CVE-2017-6460)\n\nIt was discovered that the NTP legacy DPTS refclock driver incorrectly\nhandled the /dev/datum device. A local attacker could possibly use this\nissue to cause a denial of service. (CVE-2017-6462)\n\nIt was discovered that NTP incorrectly handled certain invalid settings\nin a :config directive. A remote authenticated user could possibly use\nthis issue to cause NTP to crash, resulting in a denial of service.\n(CVE-2017-6463)\n\nIt was discovered that NTP incorrectly handled certain invalid mode\nconfiguration directives. A remote authenticated user could possibly use\nthis issue to cause NTP to crash, resulting in a denial of service.\n(CVE-2017-6464)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"ntp","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"},{"name":"ntp-doc","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"},{"name":"ntpdate","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"}],"xenial":[{"name":"ntp","version":"1:4.2.8p4+dfsg-3ubuntu5.5","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"},{"name":"ntp-doc","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"},{"name":"ntpdate","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"}],"yakkety":[{"name":"ntp","version":"1:4.2.8p8+dfsg-1ubuntu2.1","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p8+dfsg-1ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p8+dfsg-1ubuntu2.1"}],"zesty":[{"name":"ntp","version":"1:4.2.8p9+dfsg-2ubuntu1.1","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p9+dfsg-2ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p9+dfsg-2ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2016-2519","CVE-2016-7426","CVE-2016-7427","CVE-2016-7428","CVE-2016-7429","CVE-2016-7431","CVE-2016-7433","CVE-2016-7434","CVE-2016-9042","CVE-2016-9310","CVE-2016-9311","CVE-2017-6458","CVE-2017-6460","CVE-2017-6462","CVE-2017-6463","CVE-2017-6464"]}]},{"id":"CVE-2017-6460","published":"2017-03-27T00:00:00","updated_at":"2025-08-25T22:36:16.604720+00:00","description":"\nStack-based buffer overflow in the reslist function in ntpq in NTP before\n4.2.8p10 and 4.3.x before 4.3.94 allows remote servers have unspecified\nimpact via a long flagstr variable in a restriction list response.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3349-1","https://www.cve.org/CVERecord?id=CVE-2017-6460"],"bugs":["http://support.ntp.org/bin/view/Main/NtpBug3377"],"patches":{"ntp":["upstream: http://bk1.ntp.org/ntp-stable/?PAGE=cset&REV=589f58574daOkdmCkyXNpBeidQfotw"]},"tags":{},"packages":[{"name":"ntp","source":"https://ubuntu.com/security/cve?package=ntp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ntp","debian":"https://tracker.debian.org/pkg/ntp","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:4.2.8p4+dfsg-3ubuntu5.5","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1:4.2.8p8+dfsg-1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1:4.2.8p9+dfsg-2ubuntu1.1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3349-1"],"notices":[{"id":"USN-3349-1","title":"NTP vulnerabilities","summary":"Several security issues were fixed in NTP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2017-07-05T18:19:15.698112","description":"Yihan Lian discovered that NTP incorrectly handled certain large request\ndata values. A remote attacker could possibly use this issue to cause NTP\nto crash, resulting in a denial of service. This issue only affected\nUbuntu 16.04 LTS. (CVE-2016-2519)\n\nMiroslav Lichvar discovered that NTP incorrectly handled certain spoofed\naddresses when performing rate limiting. A remote attacker could possibly\nuse this issue to perform a denial of service. This issue only affected\nUbuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-7426)\n\nMatthew Van Gundy discovered that NTP incorrectly handled certain crafted\nbroadcast mode packets. A remote attacker could possibly use this issue to\nperform a denial of service. This issue only affected Ubuntu 14.04 LTS,\nUbuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-7427, CVE-2016-7428)\n\nMiroslav Lichvar discovered that NTP incorrectly handled certain responses.\nA remote attacker could possibly use this issue to perform a denial of\nservice. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and\nUbuntu 16.10. (CVE-2016-7429)\n\nSharon Goldberg and Aanchal Malhotra discovered that NTP incorrectly\nhandled origin timestamps of zero. A remote attacker could possibly use\nthis issue to bypass the origin timestamp protection mechanism. This issue\nonly affected Ubuntu 16.10. (CVE-2016-7431)\n\nBrian Utterback, Sharon Goldberg and Aanchal Malhotra discovered that NTP\nincorrectly performed initial sync calculations. This issue only applied\nto Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7433)\n\nMagnus Stubman discovered that NTP incorrectly handled certain mrulist\nqueries. A remote attacker could possibly use this issue to cause NTP to\ncrash, resulting in a denial of service. This issue only affected Ubuntu\n16.04 LTS and Ubuntu 16.10. (CVE-2016-7434)\n\nMatthew Van Gund discovered that NTP incorrectly handled origin timestamp\nchecks. A remote attacker could possibly use this issue to perform a denial\nof service. This issue only affected Ubuntu Ubuntu 16.10, and Ubuntu 17.04.\n(CVE-2016-9042)\n\nMatthew Van Gundy discovered that NTP incorrectly handled certain control\nmode packets. A remote attacker could use this issue to set or unset traps.\nThis issue only applied to Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu\n16.10. (CVE-2016-9310)\n\nMatthew Van Gundy discovered that NTP incorrectly handled the trap service.\nA remote attacker could possibly use this issue to cause NTP to crash,\nresulting in a denial of service. This issue only applied to Ubuntu 14.04\nLTS, Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-9311)\n\nIt was discovered that NTP incorrectly handled memory when processing long\nvariables. A remote authenticated user could possibly use this issue to\ncause NTP to crash, resulting in a denial of service. (CVE-2017-6458)\n\nIt was discovered that NTP incorrectly handled memory when processing long\nvariables. A remote authenticated user could possibly use this issue to\ncause NTP to crash, resulting in a denial of service. This issue only\napplied to Ubuntu 16.04 LTS, Ubuntu 16.10 and Ubuntu 17.04. (CVE-2017-6460)\n\nIt was discovered that the NTP legacy DPTS refclock driver incorrectly\nhandled the /dev/datum device. A local attacker could possibly use this\nissue to cause a denial of service. (CVE-2017-6462)\n\nIt was discovered that NTP incorrectly handled certain invalid settings\nin a :config directive. A remote authenticated user could possibly use\nthis issue to cause NTP to crash, resulting in a denial of service.\n(CVE-2017-6463)\n\nIt was discovered that NTP incorrectly handled certain invalid mode\nconfiguration directives. A remote authenticated user could possibly use\nthis issue to cause NTP to crash, resulting in a denial of service.\n(CVE-2017-6464)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"ntp","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"},{"name":"ntp-doc","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"},{"name":"ntpdate","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"}],"xenial":[{"name":"ntp","version":"1:4.2.8p4+dfsg-3ubuntu5.5","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"},{"name":"ntp-doc","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"},{"name":"ntpdate","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"}],"yakkety":[{"name":"ntp","version":"1:4.2.8p8+dfsg-1ubuntu2.1","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p8+dfsg-1ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p8+dfsg-1ubuntu2.1"}],"zesty":[{"name":"ntp","version":"1:4.2.8p9+dfsg-2ubuntu1.1","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p9+dfsg-2ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p9+dfsg-2ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2016-2519","CVE-2016-7426","CVE-2016-7427","CVE-2016-7428","CVE-2016-7429","CVE-2016-7431","CVE-2016-7433","CVE-2016-7434","CVE-2016-9042","CVE-2016-9310","CVE-2016-9311","CVE-2017-6458","CVE-2017-6460","CVE-2017-6462","CVE-2017-6463","CVE-2017-6464"]}]},{"id":"CVE-2017-6458","published":"2017-03-27T00:00:00","updated_at":"2025-08-25T22:36:16.604720+00:00","description":"\nMultiple buffer overflows in the ctl_put* functions in NTP before 4.2.8p10\nand 4.3.x before 4.3.94 allow remote authenticated users to have\nunspecified impact via a long variable.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"This is not a vulnerability per se, but a weakness in an\ninternal helper function"}],"codename":null,"priority":"negligible","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3349-1","https://www.cve.org/CVERecord?id=CVE-2017-6458"],"bugs":["http://support.ntp.org/bin/view/Main/NtpBug3379"],"patches":{"ntp":["upstream: http://bk1.ntp.org/ntp-stable/?PAGE=cset&REV=58a008c2PtxGYR8g6fLpoaFecrZ-zQ"]},"tags":{},"packages":[{"name":"ntp","source":"https://ubuntu.com/security/cve?package=ntp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ntp","debian":"https://tracker.debian.org/pkg/ntp","statuses":[{"release_codename":"groovy","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"artful","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"1:4.2.8p10+dfsg-5ubuntu1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1:4.2.8p10+dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:4.2.8p4+dfsg-3ubuntu5.5","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1:4.2.8p8+dfsg-1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1:4.2.8p9+dfsg-2ubuntu1.1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3349-1"],"notices":[{"id":"USN-3349-1","title":"NTP vulnerabilities","summary":"Several security issues were fixed in NTP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2017-07-05T18:19:15.698112","description":"Yihan Lian discovered that NTP incorrectly handled certain large request\ndata values. A remote attacker could possibly use this issue to cause NTP\nto crash, resulting in a denial of service. This issue only affected\nUbuntu 16.04 LTS. (CVE-2016-2519)\n\nMiroslav Lichvar discovered that NTP incorrectly handled certain spoofed\naddresses when performing rate limiting. A remote attacker could possibly\nuse this issue to perform a denial of service. This issue only affected\nUbuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-7426)\n\nMatthew Van Gundy discovered that NTP incorrectly handled certain crafted\nbroadcast mode packets. A remote attacker could possibly use this issue to\nperform a denial of service. This issue only affected Ubuntu 14.04 LTS,\nUbuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-7427, CVE-2016-7428)\n\nMiroslav Lichvar discovered that NTP incorrectly handled certain responses.\nA remote attacker could possibly use this issue to perform a denial of\nservice. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and\nUbuntu 16.10. (CVE-2016-7429)\n\nSharon Goldberg and Aanchal Malhotra discovered that NTP incorrectly\nhandled origin timestamps of zero. A remote attacker could possibly use\nthis issue to bypass the origin timestamp protection mechanism. This issue\nonly affected Ubuntu 16.10. (CVE-2016-7431)\n\nBrian Utterback, Sharon Goldberg and Aanchal Malhotra discovered that NTP\nincorrectly performed initial sync calculations. This issue only applied\nto Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7433)\n\nMagnus Stubman discovered that NTP incorrectly handled certain mrulist\nqueries. A remote attacker could possibly use this issue to cause NTP to\ncrash, resulting in a denial of service. This issue only affected Ubuntu\n16.04 LTS and Ubuntu 16.10. (CVE-2016-7434)\n\nMatthew Van Gund discovered that NTP incorrectly handled origin timestamp\nchecks. A remote attacker could possibly use this issue to perform a denial\nof service. This issue only affected Ubuntu Ubuntu 16.10, and Ubuntu 17.04.\n(CVE-2016-9042)\n\nMatthew Van Gundy discovered that NTP incorrectly handled certain control\nmode packets. A remote attacker could use this issue to set or unset traps.\nThis issue only applied to Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu\n16.10. (CVE-2016-9310)\n\nMatthew Van Gundy discovered that NTP incorrectly handled the trap service.\nA remote attacker could possibly use this issue to cause NTP to crash,\nresulting in a denial of service. This issue only applied to Ubuntu 14.04\nLTS, Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-9311)\n\nIt was discovered that NTP incorrectly handled memory when processing long\nvariables. A remote authenticated user could possibly use this issue to\ncause NTP to crash, resulting in a denial of service. (CVE-2017-6458)\n\nIt was discovered that NTP incorrectly handled memory when processing long\nvariables. A remote authenticated user could possibly use this issue to\ncause NTP to crash, resulting in a denial of service. This issue only\napplied to Ubuntu 16.04 LTS, Ubuntu 16.10 and Ubuntu 17.04. (CVE-2017-6460)\n\nIt was discovered that the NTP legacy DPTS refclock driver incorrectly\nhandled the /dev/datum device. A local attacker could possibly use this\nissue to cause a denial of service. (CVE-2017-6462)\n\nIt was discovered that NTP incorrectly handled certain invalid settings\nin a :config directive. A remote authenticated user could possibly use\nthis issue to cause NTP to crash, resulting in a denial of service.\n(CVE-2017-6463)\n\nIt was discovered that NTP incorrectly handled certain invalid mode\nconfiguration directives. A remote authenticated user could possibly use\nthis issue to cause NTP to crash, resulting in a denial of service.\n(CVE-2017-6464)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"ntp","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"},{"name":"ntp-doc","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"},{"name":"ntpdate","version":"1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.6.p5+dfsg-3ubuntu2.14.04.11","pocket":"security"}],"xenial":[{"name":"ntp","version":"1:4.2.8p4+dfsg-3ubuntu5.5","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"},{"name":"ntp-doc","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"},{"name":"ntpdate","version":"1:4.2.8p4+dfsg-3ubuntu5.5","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p4+dfsg-3ubuntu5.5","pocket":"security"}],"yakkety":[{"name":"ntp","version":"1:4.2.8p8+dfsg-1ubuntu2.1","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p8+dfsg-1ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p8+dfsg-1ubuntu2.1"}],"zesty":[{"name":"ntp","version":"1:4.2.8p9+dfsg-2ubuntu1.1","description":"Network Time Protocol daemon and utility programs","is_source":true},{"name":"ntp","version":"1:4.2.8p9+dfsg-2ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ntp","version_link":"https://launchpad.net/ubuntu/+source/ntp/1:4.2.8p9+dfsg-2ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2016-2519","CVE-2016-7426","CVE-2016-7427","CVE-2016-7428","CVE-2016-7429","CVE-2016-7431","CVE-2016-7433","CVE-2016-7434","CVE-2016-9042","CVE-2016-9310","CVE-2016-9311","CVE-2017-6458","CVE-2017-6460","CVE-2017-6462","CVE-2017-6463","CVE-2017-6464"]}]},{"id":"CVE-2017-5973","published":"2017-03-27T00:00:00","updated_at":"2025-08-25T22:35:31.712192+00:00","description":"\nThe xhci_kick_epctx function in hw/usb/hcd-xhci.c in QEMU (aka Quick\nEmulator) allows local guest OS privileged users to cause a denial of\nservice (infinite loop and QEMU process crash) via vectors related to\ncontrol transfer descriptor sequence.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://lists.gnu.org/archive/html/qemu-devel/2017-02/msg01101.html","http://www.openwall.com/lists/oss-security/2017/02/13/11","https://ubuntu.com/security/notices/USN-3261-1","https://www.cve.org/CVERecord?id=CVE-2017-5973"],"bugs":["https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=855611"],"patches":{"qemu-kvm":[],"qemu":["upstream: http://git.qemu-project.org/?p=qemu.git;a=commit;h=f89b60f6e5fee3923bedf80e82b4e5efc1bb156b"]},"tags":{},"packages":[{"name":"qemu","source":"https://ubuntu.com/security/cve?package=qemu","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu","debian":"https://tracker.debian.org/pkg/qemu","statuses":[{"release_codename":"artful","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.0.0+dfsg-2ubuntu1.33","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:2.5+dfsg-5ubuntu10.11","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1:2.6.1+dfsg-0ubuntu5.4","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"}]},{"name":"qemu-kvm","source":"https://ubuntu.com/security/cve?package=qemu-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu-kvm","debian":"https://tracker.debian.org/pkg/qemu-kvm","statuses":[{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"artful","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3261-1"],"notices":[{"id":"USN-3261-1","title":"QEMU vulnerabilities","summary":"Several security issues were fixed in QEMU.\n","instructions":"After a standard system update you need to restart all QEMU virtual\nmachines to make all the necessary changes.\n","references":[],"published":"2017-04-20T18:33:13.848442","description":"Zhenhao Hong discovered that QEMU incorrectly handled the Virtio GPU\ndevice. An attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. This issue only affected Ubuntu\n16.04 LTS and Ubuntu 16.10. (CVE-2016-10028, CVE-2016-10029)\n\nLi Qiang discovered that QEMU incorrectly handled the 6300esb watchdog. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2016-10155)\n\nLi Qiang discovered that QEMU incorrectly handled the i.MX Fast Ethernet\nController. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7907)\n\nIt was discovered that QEMU incorrectly handled the JAZZ RC4030 device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2016-8667)\n\nIt was discovered that QEMU incorrectly handled the 16550A UART device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2016-8669)\n\nIt was discovered that QEMU incorrectly handled the shared rings when used\nwith Xen. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service, or possibly execute\narbitrary code on the host. (CVE-2016-9381)\n\nJann Horn discovered that QEMU incorrectly handled VirtFS directory\nsharing. A privileged attacker inside the guest could use this issue to\naccess files on the host file system outside of the shared directory and\npossibly escalate their privileges. In the default installation, when QEMU\nis used with libvirt, attackers would be isolated by the libvirt AppArmor\nprofile. (CVE-2016-9602)\n\nGerd Hoffmann discovered that QEMU incorrectly handled the Cirrus VGA\ndevice when being used with a VNC connection. A privileged attacker inside\nthe guest could use this issue to cause QEMU to crash, resulting in a\ndenial of service, or possibly execute arbitrary code on the host. In the\ndefault installation, when QEMU is used with libvirt, attackers would be\nisolated by the libvirt AppArmor profile. (CVE-2016-9603)\n\nIt was discovered that QEMU incorrectly handled the ColdFire Fast Ethernet\nController. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. (CVE-2016-9776)\n\nLi Qiang discovered that QEMU incorrectly handled the Virtio GPU device. An\nattacker inside the guest could use this issue to cause QEMU to leak\ncontents of host memory. This issue only affected Ubuntu 16.04 LTS and\nUbuntu 16.10. (CVE-2016-9845, CVE-2016-9908)\n\nLi Qiang discovered that QEMU incorrectly handled the Virtio GPU device. An\nattacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. This issue only affected Ubuntu 16.04 LTS\nand Ubuntu 16.10. (CVE-2016-9846, CVE-2016-9912, CVE-2017-5552,\nCVE-2017-5578, CVE-2017-5857)\n\nLi Qiang discovered that QEMU incorrectly handled the USB redirector. An\nattacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. This issue only affected Ubuntu 16.04 LTS\nand Ubuntu 16.10. (CVE-2016-9907)\n\nLi Qiang discovered that QEMU incorrectly handled USB EHCI emulation. An\nattacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. (CVE-2016-9911)\n\nLi Qiang discovered that QEMU incorrectly handled VirtFS directory sharing.\nA privileged attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2016-9913, CVE-2016-9914,\nCVE-2016-9915, CVE-2016-9916)\n\nQinghao Tang, Li Qiang, and Jiangxin discovered that QEMU incorrectly\nhandled the Cirrus VGA device. A privileged attacker inside the guest could\nuse this issue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2016-9921, CVE-2016-9922)\n\nWjjzhang and Li Qiang discovered that QEMU incorrectly handled the Cirrus\nVGA device. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service, or possibly execute\narbitrary code on the host. In the default installation, when QEMU is used\nwith libvirt, attackers would be isolated by the libvirt AppArmor profile.\n(CVE-2017-2615)\n\nIt was discovered that QEMU incorrectly handled the Cirrus VGA device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service, or possibly execute arbitrary code\non the host. In the default installation, when QEMU is used with libvirt,\nattackers would be isolated by the libvirt AppArmor profile.\n(CVE-2017-2620)\n\nIt was discovered that QEMU incorrectly handled VNC connections. An\nattacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. (CVE-2017-2633)\n\nLi Qiang discovered that QEMU incorrectly handled the ac97 audio device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2017-5525)\n\nLi Qiang discovered that QEMU incorrectly handled the es1370 audio device.\nA privileged attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2017-5526)\n\nLi Qiang discovered that QEMU incorrectly handled the 16550A UART device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2017-5579)\n\nJiang Xin discovered that QEMU incorrectly handled SDHCI device emulation.\nA privileged attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service, or possibly execute arbitrary\ncode on the host. In the default installation, when QEMU is used with\nlibvirt, attackers would be isolated by the libvirt AppArmor profile.\n(CVE-2017-5667)\n\nLi Qiang discovered that QEMU incorrectly handled the MegaRAID SAS device.\nA privileged attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2017-5856)\n\nLi Qiang discovered that QEMU incorrectly handled the CCID Card device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2017-5898)\n\nLi Qiang discovered that QEMU incorrectly handled USB xHCI controller\nemulation. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. (CVE-2017-5973)\n\nJiang Xin and Wjjzhang discovered that QEMU incorrectly handled SDHCI\ndevice emulation. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2017-5987)\n\nLi Qiang discovered that QEMU incorrectly handled USB OHCI controller\nemulation. A privileged attacker inside the guest could use this issue to\ncause QEMU to hang, resulting in a denial of service. (CVE-2017-6505)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.33","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-common","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-guest-agent","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-keymaps","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-kvm","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-aarch64","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-arm","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-common","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-mips","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-misc","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-ppc","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-sparc","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-x86","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-user","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-user-static","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-utils","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"}],"xenial":[{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.11","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-block-extra","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-guest-agent","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-kvm","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-aarch64","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-arm","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-common","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-mips","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-misc","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-ppc","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-s390x","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-sparc","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-x86","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-user","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-user-binfmt","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-user-static","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-utils","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"}],"yakkety":[{"name":"qemu","version":"1:2.6.1+dfsg-0ubuntu5.4","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-system","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-aarch64","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-arm","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-mips","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-misc","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-ppc","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-s390x","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-sparc","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-x86","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"}]},"type":"USN","cves_ids":["CVE-2016-10028","CVE-2016-10029","CVE-2016-10155","CVE-2016-7907","CVE-2016-8667","CVE-2016-8669","CVE-2016-9381","CVE-2016-9602","CVE-2016-9603","CVE-2016-9776","CVE-2016-9845","CVE-2016-9846","CVE-2016-9907","CVE-2016-9908","CVE-2016-9911","CVE-2016-9912","CVE-2016-9913","CVE-2016-9914","CVE-2016-9915","CVE-2016-9916","CVE-2016-9921","CVE-2016-9922","CVE-2017-2615","CVE-2017-2620","CVE-2017-2633","CVE-2017-5525","CVE-2017-5526","CVE-2017-5552","CVE-2017-5578","CVE-2017-5579","CVE-2017-5667","CVE-2017-5856","CVE-2017-5857","CVE-2017-5898","CVE-2017-5973","CVE-2017-5987","CVE-2017-6505"]}]},{"id":"CVE-2017-5932","published":"2017-03-27T00:00:00","updated_at":"2025-08-25T22:35:27.038421+00:00","description":"\nThe path autocompletion feature in Bash 4.4 allows local users to gain\nprivileges via a crafted filename starting with a \" (double quote)\ncharacter and a command substitution metacharacter.","ubuntu_description":"","notes":[{"author":"ratliff","note":"introduced in the devel-branch in May 2015 according to report"}],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://github.com/jheyens/bash_completion_vuln/raw/master/2017-01-17.bash_completion_report.pdf","https://ubuntu.com/security/notices/USN-3294-1","https://www.cve.org/CVERecord?id=CVE-2017-5932"],"bugs":[""],"patches":{"bash":["upstream: https://ftp.gnu.org/gnu/bash/bash-4.4-patches/bash44-007"]},"tags":{},"packages":[{"name":"bash","source":"https://ubuntu.com/security/cve?package=bash","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=bash","debian":"https://tracker.debian.org/pkg/bash","statuses":[{"release_codename":"precise","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.4-3","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"4.4-2ubuntu1.1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3294-1"],"notices":[{"id":"USN-3294-1","title":"Bash vulnerabilities","summary":"Several security issues were fixed in Bash.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2017-05-17T17:06:15.319787","description":"Bernd Dietzel discovered that Bash incorrectly expanded the hostname when\ndisplaying the prompt. If a remote attacker were able to modify a hostname,\nthis flaw could be exploited to execute arbitrary code. This issue only\naffected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-0634)\n\nIt was discovered that Bash incorrectly handled the SHELLOPTS and PS4\nenvironment variables. A local attacker could use this issue to execute\narbitrary code with root privileges. This issue only affected Ubuntu 14.04\nLTS, Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7543)\n\nIt was discovered that Bash incorrectly handled the popd command. A remote\nattacker could possibly use this issue to bypass restricted shells.\n(CVE-2016-9401)\n\nIt was discovered that Bash incorrectly handled path autocompletion. A\nlocal attacker could possibly use this issue to execute arbitrary code.\nThis issue only affected Ubuntu 17.04. (CVE-2017-5932)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"bash","version":"4.3-7ubuntu1.7","description":"GNU Bourne Again SHell","is_source":true},{"name":"bash","version":"4.3-7ubuntu1.7","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-7ubuntu1.7","pocket":"security"},{"name":"bash-builtins","version":"4.3-7ubuntu1.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-7ubuntu1.7","pocket":"security"},{"name":"bash-doc","version":"4.3-7ubuntu1.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-7ubuntu1.7","pocket":"security"},{"name":"bash-static","version":"4.3-7ubuntu1.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-7ubuntu1.7","pocket":"security"}],"xenial":[{"name":"bash","version":"4.3-14ubuntu1.2","description":"GNU Bourne Again SHell","is_source":true},{"name":"bash","version":"4.3-14ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-14ubuntu1.2","pocket":"security"},{"name":"bash-builtins","version":"4.3-14ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-14ubuntu1.2","pocket":"security"},{"name":"bash-doc","version":"4.3-14ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-14ubuntu1.2","pocket":"security"},{"name":"bash-static","version":"4.3-14ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-14ubuntu1.2","pocket":"security"}],"yakkety":[{"name":"bash","version":"4.3-15ubuntu1.1","description":"GNU Bourne Again SHell","is_source":true},{"name":"bash","version":"4.3-15ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-15ubuntu1.1"}],"zesty":[{"name":"bash","version":"4.4-2ubuntu1.1","description":"GNU Bourne Again SHell","is_source":true},{"name":"bash","version":"4.4-2ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.4-2ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2016-0634","CVE-2016-7543","CVE-2016-9401","CVE-2017-5932"]}]},{"id":"CVE-2016-9922","published":"2017-03-27T00:00:00","updated_at":"2025-08-25T22:15:12.590858+00:00","description":"\nThe cirrus_do_copy function in hw/display/cirrus_vga.c in QEMU (aka Quick\nEmulator), when cirrus graphics mode is VGA, allows local guest OS\nprivileged users to cause a denial of service (divide-by-zero error and\nQEMU process crash) via vectors involving blit pitch values.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://lists.gnu.org/archive/html/qemu-devel/2016-12/msg00442.html","https://ubuntu.com/security/notices/USN-3261-1","https://www.cve.org/CVERecord?id=CVE-2016-9922"],"bugs":["https://bugzilla.redhat.com/show_bug.cgi?id=1334398","https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=847960"],"patches":{"qemu-kvm":[],"qemu":["upstream: http://git.qemu-project.org/?p=qemu.git;a=commit;h=4299b90e9ba9ce5ca9024572804ba751aa1a7e70"]},"tags":{},"packages":[{"name":"qemu","source":"https://ubuntu.com/security/cve?package=qemu","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu","debian":"https://tracker.debian.org/pkg/qemu","statuses":[{"release_codename":"artful","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.0.0+dfsg-2ubuntu1.33","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:2.5+dfsg-5ubuntu10.11","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1:2.6.1+dfsg-0ubuntu5.4","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"1:2.8+dfsg-3ubuntu2","component":null,"pocket":"security"}]},{"name":"qemu-kvm","source":"https://ubuntu.com/security/cve?package=qemu-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu-kvm","debian":"https://tracker.debian.org/pkg/qemu-kvm","statuses":[{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"artful","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3261-1"],"notices":[{"id":"USN-3261-1","title":"QEMU vulnerabilities","summary":"Several security issues were fixed in QEMU.\n","instructions":"After a standard system update you need to restart all QEMU virtual\nmachines to make all the necessary changes.\n","references":[],"published":"2017-04-20T18:33:13.848442","description":"Zhenhao Hong discovered that QEMU incorrectly handled the Virtio GPU\ndevice. An attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. This issue only affected Ubuntu\n16.04 LTS and Ubuntu 16.10. (CVE-2016-10028, CVE-2016-10029)\n\nLi Qiang discovered that QEMU incorrectly handled the 6300esb watchdog. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2016-10155)\n\nLi Qiang discovered that QEMU incorrectly handled the i.MX Fast Ethernet\nController. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7907)\n\nIt was discovered that QEMU incorrectly handled the JAZZ RC4030 device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2016-8667)\n\nIt was discovered that QEMU incorrectly handled the 16550A UART device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2016-8669)\n\nIt was discovered that QEMU incorrectly handled the shared rings when used\nwith Xen. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service, or possibly execute\narbitrary code on the host. (CVE-2016-9381)\n\nJann Horn discovered that QEMU incorrectly handled VirtFS directory\nsharing. A privileged attacker inside the guest could use this issue to\naccess files on the host file system outside of the shared directory and\npossibly escalate their privileges. In the default installation, when QEMU\nis used with libvirt, attackers would be isolated by the libvirt AppArmor\nprofile. (CVE-2016-9602)\n\nGerd Hoffmann discovered that QEMU incorrectly handled the Cirrus VGA\ndevice when being used with a VNC connection. A privileged attacker inside\nthe guest could use this issue to cause QEMU to crash, resulting in a\ndenial of service, or possibly execute arbitrary code on the host. In the\ndefault installation, when QEMU is used with libvirt, attackers would be\nisolated by the libvirt AppArmor profile. (CVE-2016-9603)\n\nIt was discovered that QEMU incorrectly handled the ColdFire Fast Ethernet\nController. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. (CVE-2016-9776)\n\nLi Qiang discovered that QEMU incorrectly handled the Virtio GPU device. An\nattacker inside the guest could use this issue to cause QEMU to leak\ncontents of host memory. This issue only affected Ubuntu 16.04 LTS and\nUbuntu 16.10. (CVE-2016-9845, CVE-2016-9908)\n\nLi Qiang discovered that QEMU incorrectly handled the Virtio GPU device. An\nattacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. This issue only affected Ubuntu 16.04 LTS\nand Ubuntu 16.10. (CVE-2016-9846, CVE-2016-9912, CVE-2017-5552,\nCVE-2017-5578, CVE-2017-5857)\n\nLi Qiang discovered that QEMU incorrectly handled the USB redirector. An\nattacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. This issue only affected Ubuntu 16.04 LTS\nand Ubuntu 16.10. (CVE-2016-9907)\n\nLi Qiang discovered that QEMU incorrectly handled USB EHCI emulation. An\nattacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. (CVE-2016-9911)\n\nLi Qiang discovered that QEMU incorrectly handled VirtFS directory sharing.\nA privileged attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2016-9913, CVE-2016-9914,\nCVE-2016-9915, CVE-2016-9916)\n\nQinghao Tang, Li Qiang, and Jiangxin discovered that QEMU incorrectly\nhandled the Cirrus VGA device. A privileged attacker inside the guest could\nuse this issue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2016-9921, CVE-2016-9922)\n\nWjjzhang and Li Qiang discovered that QEMU incorrectly handled the Cirrus\nVGA device. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service, or possibly execute\narbitrary code on the host. In the default installation, when QEMU is used\nwith libvirt, attackers would be isolated by the libvirt AppArmor profile.\n(CVE-2017-2615)\n\nIt was discovered that QEMU incorrectly handled the Cirrus VGA device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service, or possibly execute arbitrary code\non the host. In the default installation, when QEMU is used with libvirt,\nattackers would be isolated by the libvirt AppArmor profile.\n(CVE-2017-2620)\n\nIt was discovered that QEMU incorrectly handled VNC connections. An\nattacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. (CVE-2017-2633)\n\nLi Qiang discovered that QEMU incorrectly handled the ac97 audio device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2017-5525)\n\nLi Qiang discovered that QEMU incorrectly handled the es1370 audio device.\nA privileged attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2017-5526)\n\nLi Qiang discovered that QEMU incorrectly handled the 16550A UART device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2017-5579)\n\nJiang Xin discovered that QEMU incorrectly handled SDHCI device emulation.\nA privileged attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service, or possibly execute arbitrary\ncode on the host. In the default installation, when QEMU is used with\nlibvirt, attackers would be isolated by the libvirt AppArmor profile.\n(CVE-2017-5667)\n\nLi Qiang discovered that QEMU incorrectly handled the MegaRAID SAS device.\nA privileged attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2017-5856)\n\nLi Qiang discovered that QEMU incorrectly handled the CCID Card device. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\ncrash, resulting in a denial of service. (CVE-2017-5898)\n\nLi Qiang discovered that QEMU incorrectly handled USB xHCI controller\nemulation. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. (CVE-2017-5973)\n\nJiang Xin and Wjjzhang discovered that QEMU incorrectly handled SDHCI\ndevice emulation. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2017-5987)\n\nLi Qiang discovered that QEMU incorrectly handled USB OHCI controller\nemulation. A privileged attacker inside the guest could use this issue to\ncause QEMU to hang, resulting in a denial of service. (CVE-2017-6505)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.33","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-common","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-guest-agent","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-keymaps","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-kvm","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-aarch64","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-arm","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-common","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-mips","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-misc","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-ppc","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-sparc","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-system-x86","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-user","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-user-static","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"},{"name":"qemu-utils","version":"2.0.0+dfsg-2ubuntu1.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.33","pocket":"security"}],"xenial":[{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.11","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-block-extra","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-guest-agent","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-kvm","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-aarch64","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-arm","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-common","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-mips","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-misc","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-ppc","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-s390x","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-sparc","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-system-x86","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-user","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-user-binfmt","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-user-static","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"},{"name":"qemu-utils","version":"1:2.5+dfsg-5ubuntu10.11","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.11","pocket":"security"}],"yakkety":[{"name":"qemu","version":"1:2.6.1+dfsg-0ubuntu5.4","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-system","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-aarch64","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-arm","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-mips","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-misc","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-ppc","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-s390x","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-sparc","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"},{"name":"qemu-system-x86","version":"1:2.6.1+dfsg-0ubuntu5.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.4"}]},"type":"USN","cves_ids":["CVE-2016-10028","CVE-2016-10029","CVE-2016-10155","CVE-2016-7907","CVE-2016-8667","CVE-2016-8669","CVE-2016-9381","CVE-2016-9602","CVE-2016-9603","CVE-2016-9776","CVE-2016-9845","CVE-2016-9846","CVE-2016-9907","CVE-2016-9908","CVE-2016-9911","CVE-2016-9912","CVE-2016-9913","CVE-2016-9914","CVE-2016-9915","CVE-2016-9916","CVE-2016-9921","CVE-2016-9922","CVE-2017-2615","CVE-2017-2620","CVE-2017-2633","CVE-2017-5525","CVE-2017-5526","CVE-2017-5552","CVE-2017-5578","CVE-2017-5579","CVE-2017-5667","CVE-2017-5856","CVE-2017-5857","CVE-2017-5898","CVE-2017-5973","CVE-2017-5987","CVE-2017-6505"]}]},{"id":"CVE-2017-2645","published":"2017-03-26T18:59:00","updated_at":"2025-08-25T22:31:07.531370+00:00","description":"\nIn Moodle 3.x, XSS can occur via attachments to evidence of prior learning.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":6.1,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://tracker.moodle.org/browse/MDL-57597","http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-57597","https://www.cve.org/CVERecord?id=CVE-2017-2645"],"bugs":[""],"patches":{"moodle":[]},"tags":{},"packages":[{"name":"moodle","source":"https://ubuntu.com/security/cve?package=moodle","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=moodle","debian":"https://tracker.debian.org/pkg/moodle","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [code not present]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2017-2644","published":"2017-03-26T18:59:00","updated_at":"2025-08-25T22:31:07.531370+00:00","description":"\nIn Moodle 3.x, XSS can occur via evidence of prior learning.","ubuntu_description":"","notes":[{"author":"msalvatore","note":"Versions affected: 3.2 to 3.2.1 and 3.1 to 3.1.4"}],"codename":null,"priority":"medium","cvss3":6.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":6.1,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://tracker.moodle.org/browse/MDL-57596","http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-57596","https://moodle.org/mod/forum/discuss.php?d=349421","https://www.cve.org/CVERecord?id=CVE-2017-2644"],"bugs":[""],"patches":{"moodle":[]},"tags":{},"packages":[{"name":"moodle","source":"https://ubuntu.com/security/cve?package=moodle","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=moodle","debian":"https://tracker.debian.org/pkg/moodle","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [code not present]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2017-2643","published":"2017-03-26T18:59:00","updated_at":"2025-08-25T22:31:07.531370+00:00","description":"\nIn Moodle 3.2.x, global search displays user names for unauthenticated\nusers.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":5.3,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://tracker.moodle.org/browse/MDL-56526","http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-56526","https://www.cve.org/CVERecord?id=CVE-2017-2643"],"bugs":[""],"patches":{"moodle":[]},"tags":{},"packages":[{"name":"moodle","source":"https://ubuntu.com/security/cve?package=moodle","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=moodle","debian":"https://tracker.debian.org/pkg/moodle","statuses":[{"release_codename":"artful","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.7.19+dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"3.0.3+dfsg-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2017-2641","published":"2017-03-26T18:59:00","updated_at":"2025-08-25T22:31:07.531370+00:00","description":"\nIn Moodle 2.x and 3.x, SQL injection can occur via user preferences.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["https://tracker.moodle.org/browse/MDL-58010","https://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-58010","https://www.cve.org/CVERecord?id=CVE-2017-2641"],"bugs":[""],"patches":{"moodle":[]},"tags":{},"packages":[{"name":"moodle","source":"https://ubuntu.com/security/cve?package=moodle","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=moodle","debian":"https://tracker.debian.org/pkg/moodle","statuses":[{"release_codename":"artful","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.7.19+dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"3.0.3+dfsg-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2017-7264","published":"2017-03-26T05:59:00","updated_at":"2025-08-04T18:08:59.877915+00:00","description":"\nUse-after-free vulnerability in the fz_subsample_pixmap function in\nfitz/pixmap.c in Artifex MuPDF 1.10a allows remote attackers to cause a\ndenial of service (application crash) or possibly have unspecified other\nimpact via a crafted document.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":5.3,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://bugs.ghostscript.com/show_bug.cgi?id=697515","https://blogs.gentoo.org/ago/2017/02/09/mupdf-use-after-free-in-fz_subsample_pixmap-pixmap-c/","http://git.ghostscript.com/?p=mupdf.git;h=2c4e5867ee699b1081527bc6c6ea0e99a35a5c27","https://www.cve.org/CVERecord?id=CVE-2017-7264"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854734"],"patches":{"mupdf":[]},"tags":{},"packages":[{"name":"mupdf","source":"https://ubuntu.com/security/cve?package=mupdf","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=mupdf","debian":"https://tracker.debian.org/pkg/mupdf","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"artful","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.9a+ds1-3","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"1.9a+ds1-4","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2017-7263","published":"2017-03-26T05:59:00","updated_at":"2025-08-26T12:01:19.317603+00:00","description":"\nThe bm_readbody_bmp function in bitmap_io.c in Potrace 1.14 allows remote\nattackers to cause a denial of service (heap-based buffer over-read and\napplication crash) or possibly have unspecified other impact via a crafted\nBMP image. NOTE: this vulnerability exists because of an incomplete fix for\nCVE-2016-8698.","ubuntu_description":"","notes":[{"author":"tyhicks","note":"inkscape in xenial and earlier embeds libpotrace (LP: #1156664)"},{"author":"mdeslaur","note":"potrace in inkscape works on bitmaps already loaded, not\narbitrary images. Marking as not-affected for inkscape."}],"codename":null,"priority":"low","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://blogs.gentoo.org/ago/2017/03/03/potrace-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c-incomplete-fix-for-cve-2016-8698/","http://seclists.org/oss-sec/2017/q1/682","https://www.cve.org/CVERecord?id=CVE-2017-7263"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=858763"],"patches":{"potrace":[],"inkscape":[]},"tags":{},"packages":[{"name":"inkscape","source":"https://ubuntu.com/security/cve?package=inkscape","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=inkscape","debian":"https://tracker.debian.org/pkg/inkscape","statuses":[{"release_codename":"artful","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"no attack vector","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [no attack vector]","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"uses system potrace","component":null,"pocket":"security"}]},{"name":"potrace","source":"https://ubuntu.com/security/cve?package=potrace","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=potrace","debian":"https://tracker.debian.org/pkg/potrace","statuses":[{"release_codename":"hirsute","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"1.15-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2017-7262","published":"2017-03-25T00:59:00","updated_at":"2025-08-25T22:37:24.683749+00:00","description":"\nThe AMD Ryzen processor with AGESA microcode through 2017-01-27 allows\nlocal users to cause a denial of service (system hang) via an application\nthat makes a long series of FMA3 instructions, as demonstrated by the Flops\ntest suite.","ubuntu_description":"","notes":[{"author":"Debian","note":"Hardware bug in AMD Ryzen CPUs, cannot be fixed via micro code\nupdates, but only BIOS updates"}],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["http://forum.hwbot.org/showpost.php?p=480524","http://forum.hwbot.org/showthread.php?t=167605","https://news.ycombinator.com/item?id=13924192","https://www.techpowerup.com/231536/amd-ryzen-machine-crashes-to-a-sequence-of-fma3-instructions","https://www.cve.org/CVERecord?id=CVE-2017-7262"],"bugs":[""],"patches":{"amd64-microcode":[]},"tags":{},"packages":[{"name":"amd64-microcode","source":"https://ubuntu.com/security/cve?package=amd64-microcode","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=amd64-microcode","debian":"https://tracker.debian.org/pkg/amd64-microcode","statuses":[{"release_codename":"artful","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-10272","published":"2017-03-24T19:59:00","updated_at":"2025-08-25T21:53:14.796749+00:00","description":"\nLibTIFF 4.0.7 allows remote attackers to cause a denial of service\n(heap-based buffer overflow) or possibly have unspecified other impact via\na crafted TIFF image, related to \"WRITE of size 2048\" and\nlibtiff/tif_next.c:64:9.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"same fix as CVE-2016-10092"}],"codename":null,"priority":"negligible","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://blogs.gentoo.org/ago/2017/01/01/libtiff-multiple-heap-based-buffer-overflow/","https://www.cve.org/CVERecord?id=CVE-2016-10272"],"bugs":["http://bugzilla.maptools.org/show_bug.cgi?id=2620"],"patches":{"tiff":["upstream: https://github.com/vadz/libtiff/commit/9657bbe3cdce4aaa90e07d50c1c70ae52da0ba6a"]},"tags":{},"packages":[{"name":"tiff","source":"https://ubuntu.com/security/cve?package=tiff","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tiff","debian":"https://tracker.debian.org/pkg/tiff","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.0.3-7ubuntu0.6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.0.7-2","component":null,"pocket":"security"},{"release_codename":"artful","status":"not-affected","description":"4.0.7-5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.0.6-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"4.0.7-5","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-10271","published":"2017-03-24T19:59:00","updated_at":"2025-08-25T21:53:14.796749+00:00","description":"\ntools/tiffcrop.c in LibTIFF 4.0.7 allows remote attackers to cause a denial\nof service (heap-based buffer over-read and buffer overflow) or possibly\nhave unspecified other impact via a crafted TIFF image, related to \"READ of\nsize 1\" and libtiff/tif_fax3.c:413:13.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"same fix as CVE-2016-10092"}],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://blogs.gentoo.org/ago/2017/01/01/libtiff-multiple-heap-based-buffer-overflow/","https://www.cve.org/CVERecord?id=CVE-2016-10271"],"bugs":["http://bugzilla.maptools.org/show_bug.cgi?id=2620"],"patches":{"tiff":["upstream: https://github.com/vadz/libtiff/commit/9657bbe3cdce4aaa90e07d50c1c70ae52da0ba6a"]},"tags":{},"packages":[{"name":"tiff","source":"https://ubuntu.com/security/cve?package=tiff","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tiff","debian":"https://tracker.debian.org/pkg/tiff","statuses":[{"release_codename":"artful","status":"not-affected","description":"4.0.7-5","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.0.3-7ubuntu0.6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.0.7-2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.0.6-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"4.0.7-5","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-10270","published":"2017-03-24T19:59:00","updated_at":"2025-08-25T21:53:14.796749+00:00","description":"\nLibTIFF 4.0.7 allows remote attackers to cause a denial of service\n(heap-based buffer over-read) or possibly have unspecified other impact via\na crafted TIFF image, related to \"READ of size 8\" and\nlibtiff/tif_read.c:523:22.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://blogs.gentoo.org/ago/2017/01/01/libtiff-multiple-heap-based-buffer-overflow/","https://github.com/vadz/libtiff/commit/9a72a69e035ee70ff5c41541c8c61cd97990d018","http://bugzilla.maptools.org/show_bug.cgi?id=2608","https://www.cve.org/CVERecord?id=CVE-2016-10270"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=846837"],"patches":{"tiff":[]},"tags":{},"packages":[{"name":"tiff","source":"https://ubuntu.com/security/cve?package=tiff","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tiff","debian":"https://tracker.debian.org/pkg/tiff","statuses":[{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.0.7-2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2017-5509","published":"2017-03-24T15:59:00","updated_at":"2025-08-25T22:34:43.623689+00:00","description":"\ncoders/psd.c in ImageMagick allows remote attackers to have unspecified\nimpact via a crafted PSD file, which triggers an out-of-bounds write.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2017/01/16/6","https://www.cve.org/CVERecord?id=CVE-2017-5509"],"bugs":["https://github.com/ImageMagick/ImageMagick/issues/350","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=851377"],"patches":{"imagemagick":[]},"tags":{},"packages":[{"name":"imagemagick","source":"https://ubuntu.com/security/cve?package=imagemagick","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=imagemagick","debian":"https://tracker.debian.org/pkg/imagemagick","statuses":[{"release_codename":"precise","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"8:6.9.7.4+dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"code not present","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-3179","published":"2017-03-24T15:59:00","updated_at":"2025-07-17T16:42:42.584291+00:00","description":"\nThe processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3\nallows local users to cause a denial of service (invalid free and daemon\ncrash) via vectors related to error handling.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://speirofr.appspot.com/files/advisory/SPADV-2016-02.md","https://www.cve.org/CVERecord?id=CVE-2016-3179"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=816759"],"patches":{"minissdpd":["upstream: https://github.com/miniupnp/miniupnp/commit/140ee8d2204b383279f854802b27bdb41c1d5d1a"]},"tags":{},"packages":[{"name":"minissdpd","source":"https://ubuntu.com/security/cve?package=minissdpd","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=minissdpd","debian":"https://tracker.debian.org/pkg/minissdpd","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.1.20120121-1+deb7u1build0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.2.20130907-3+deb8u1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.2.20130907-3+deb8u1build0.16.04.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1.5.20180223-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1.5.20180223-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-3178","published":"2017-03-24T15:59:00","updated_at":"2025-08-25T21:59:26.936570+00:00","description":"\nThe processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3\nallows local users to cause a denial of service (out-of-bounds memory\naccess and daemon crash) via vectors involving a negative length value.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://speirofr.appspot.com/files/advisory/SPADV-2016-02.md","https://www.cve.org/CVERecord?id=CVE-2016-3178"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=816759"],"patches":{"minissdpd":["upstream: https://github.com/miniupnp/miniupnp/commit/b238cade9a173c6f751a34acf8ccff838a62aa47"]},"tags":{},"packages":[{"name":"minissdpd","source":"https://ubuntu.com/security/cve?package=minissdpd","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=minissdpd","debian":"https://tracker.debian.org/pkg/minissdpd","statuses":[{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.2.20130907-3+deb8u1","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1.5.20180223-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1.5.20180223-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.1.20120121-1+deb7u1build0.14.04.1","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.2.20130907-3+deb8u1build0.16.04.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":57660,"limit":20,"total_results":79316}