{"cves":[{"id":"CVE-2012-0505","published":"2012-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) component\nin Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, 5 Update\n33 and earlier, and 1.4.2_35 and earlier allows remote untrusted Java Web\nStart applications and untrusted Java applets to affect confidentiality,\nintegrity, and availability via unknown vectors related to Serialization.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"in natty+, NetX and the plugin moved to the icedtea-web package"},{"author":"sbeattie","note":"red hat description:\nIt was discovered that the exception thrown on deserialization\nfailure did not always contain a proper identification of the cause\nof the failure. An untrusted Java application or applet could use\nthis flaw to bypass Java sandbox restrictions."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1373-1","https://ubuntu.com/security/notices/USN-1373-2","https://www.cve.org/CVERecord?id=CVE-2012-0505"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[],"icedtea-web":[],"openjdk-7":[]},"tags":{},"packages":[{"name":"icedtea-web","source":"https://ubuntu.com/security/cve?package=icedtea-web","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=icedtea-web","debian":"https://tracker.debian.org/pkg/icedtea-web","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b22-1.10.6-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b23~pre11-0ubuntu1.11.10.2","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.13-0ubuntu1~11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-7","source":"https://ubuntu.com/security/cve?package=openjdk-7","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-7","debian":"https://tracker.debian.org/pkg/openjdk-7","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"7u9-2.3.3-0ubuntu1~11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1373-1","USN-1373-2"],"notices":[{"id":"USN-1373-1","title":"OpenJDK 6 vulnerabilities","summary":"Multiple OpenJDK 6 vulnerabilities have been fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-02-24T10:35:32.518143","description":"It was discovered that the Java HttpServer class did not limit the\nnumber of headers read from a HTTP request. A remote attacker could\ncause a denial of service by sending special requests that trigger\nhash collisions predictably. (CVE-2011-5035)\n\nATTENTION: this update changes previous Java HttpServer class behavior\nby limiting the number of request headers to 200. This may be increased\nby adjusting the sun.net.httpserver.maxReqHeaders property.\n\nIt was discovered that the Java Sound component did not properly\ncheck buffer boundaries. A remote attacker could use this to cause\na denial of service or view confidential data. (CVE-2011-3563)\n\nIt was discovered that the Java2D implementation does not properly\ncheck graphics rendering objects before passing them to the native\nrenderer. A remote attacker could use this to cause a denial of\nservice or to bypass Java sandbox restrictions. (CVE-2012-0497)\n\nIt was discovered that an off-by-one error exists in the Java ZIP\nfile processing code. An attacker could us this to cause a denial of\nservice through a maliciously crafted ZIP file. (CVE-2012-0501)\n\nIt was discovered that the Java AWT KeyboardFocusManager did not\nproperly enforce keyboard focus security policy. A remote attacker\ncould use this with an untrusted application or applet to grab keyboard\nfocus and possibly expose confidential data. (CVE-2012-0502)\n\nIt was discovered that the Java TimeZone class did not properly enforce\nsecurity policy around setting the default time zone. A remote attacker\ncould use this with an untrusted application or applet to set a new\ndefault time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n\nIt was discovered the Java ObjectStreamClass did not throw\nan accurately identifiable exception when a deserialization\nfailure occurred. A remote attacker could use this with\nan untrusted application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0505)\n\nIt was discovered that the Java CORBA implementation did not properly\nprotect repository identifiers on certain CORBA objects. A remote\nattacker could use this to corrupt object data. (CVE-2012-0506)\n\nIt was discovered that the Java AtomicReferenceArray class\nimplementation did not properly check if an array was of\nthe expected Object[] type. A remote attacker could use this\nwith a malicious application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6","version":"6b22-1.10.6-0ubuntu1","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"icedtea-6-jre-jamvm","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-headless","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-zero","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"}],"oneiric":[{"name":"openjdk-6","version":"6b23~pre11-0ubuntu1.11.10.2","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"icedtea-6-jre-jamvm","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-headless","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-zero","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-lib","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"}]},"type":"USN","cves_ids":["CVE-2011-3563","CVE-2012-0507","CVE-2011-5035","CVE-2012-0497","CVE-2012-0501","CVE-2012-0502","CVE-2012-0503","CVE-2012-0505","CVE-2012-0506"]},{"id":"USN-1373-2","title":"OpenJDK 6 (ARM) vulnerabilities","summary":"Multiple vulnerabilities in OpenJDK 6 for the ARM architecture have\nbeen fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-03-01T09:07:31.675963","description":"USN 1373-1 fixed vulnerabilities in OpenJDK 6 in Ubuntu 10.04 LTS,\nUbuntu 10.10 and Ubuntu 11.04 for all architectures except for ARM\n(armel). This provides the corresponding OpenJDK 6 update for use\nwith the ARM (armel) architecture in Ubuntu 10.04 LTS, Ubuntu 10.10\nand Ubuntu 11.04.\n\nOriginal advisory details:\n\n It was discovered that the Java HttpServer class did not limit the\n number of headers read from a HTTP request. A remote attacker could\n cause a denial of service by sending special requests that trigger\n hash collisions predictably. (CVE-2011-5035)\n \n ATTENTION: this update changes previous Java HttpServer class behavior\n by limiting the number of request headers to 200. This may be increased\n by adjusting the sun.net.httpserver.maxReqHeaders property.\n \n It was discovered that the Java Sound component did not properly\n check buffer boundaries. A remote attacker could use this to cause\n a denial of service or view confidential data. (CVE-2011-3563)\n \n It was discovered that the Java2D implementation does not properly\n check graphics rendering objects before passing them to the native\n renderer. A remote attacker could use this to cause a denial of\n service or to bypass Java sandbox restrictions. (CVE-2012-0497)\n \n It was discovered that an off-by-one error exists in the Java ZIP\n file processing code. An attacker could us this to cause a denial of\n service through a maliciously crafted ZIP file. (CVE-2012-0501)\n \n It was discovered that the Java AWT KeyboardFocusManager did not\n properly enforce keyboard focus security policy. A remote attacker\n could use this with an untrusted application or applet to grab keyboard\n focus and possibly expose confidential data. (CVE-2012-0502)\n \n It was discovered that the Java TimeZone class did not properly enforce\n security policy around setting the default time zone. A remote attacker\n could use this with an untrusted application or applet to set a new\n default time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n \n It was discovered the Java ObjectStreamClass did not throw\n an accurately identifiable exception when a deserialization\n failure occurred. A remote attacker could use this with\n an untrusted application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0505)\n \n It was discovered that the Java CORBA implementation did not properly\n protect repository identifiers on certain CORBA objects. A remote\n attacker could use this to corrupt object data. (CVE-2012-0506)\n \n It was discovered that the Java AtomicReferenceArray class\n implementation did not properly check if an array was of\n the expected Object[] type. A remote attacker could use this\n with a malicious application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~11.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-jamvm","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"}]},"type":"USN","cves_ids":["CVE-2012-0501","CVE-2012-0497","CVE-2011-5035","CVE-2012-0503","CVE-2011-3563","CVE-2012-0507","CVE-2012-0502","CVE-2012-0505","CVE-2012-0506"]}]},{"id":"CVE-2012-0503","published":"2012-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) component\nin Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, 5.0\nUpdate 33 and earlier, and 1.4.2_35 and earlier allows remote untrusted\nJava Web Start applications and untrusted Java applets to affect\nconfidentiality, integrity, and availability, related to I18n.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"in natty+, NetX and the plugin moved to the icedtea-web package"},{"author":"sbeattie","note":"red hat description:\nIt was discovered that the use of TimeZone.setDefault() was not\nrestricted by the SecurityManager, allowing an untrusted Java\napplication or applet to set a new default time zone, and hence\nbypass Java sandbox restrictions."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1373-1","https://ubuntu.com/security/notices/USN-1373-2","https://www.cve.org/CVERecord?id=CVE-2012-0503"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[],"icedtea-web":[],"openjdk-7":[]},"tags":{},"packages":[{"name":"icedtea-web","source":"https://ubuntu.com/security/cve?package=icedtea-web","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=icedtea-web","debian":"https://tracker.debian.org/pkg/icedtea-web","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"hardy","status":"released","description":"6b27-1.12.3-0ubuntu1~08.04.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b22-1.10.6-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b23~pre11-0ubuntu1.11.10.2","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.13-0ubuntu1~11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-7","source":"https://ubuntu.com/security/cve?package=openjdk-7","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-7","debian":"https://tracker.debian.org/pkg/openjdk-7","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"7u9-2.3.3-0ubuntu1~11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"removed from archive","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"removed from archive","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"removed from archive","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1373-1","USN-1373-2"],"notices":[{"id":"USN-1373-1","title":"OpenJDK 6 vulnerabilities","summary":"Multiple OpenJDK 6 vulnerabilities have been fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-02-24T10:35:32.518143","description":"It was discovered that the Java HttpServer class did not limit the\nnumber of headers read from a HTTP request. A remote attacker could\ncause a denial of service by sending special requests that trigger\nhash collisions predictably. (CVE-2011-5035)\n\nATTENTION: this update changes previous Java HttpServer class behavior\nby limiting the number of request headers to 200. This may be increased\nby adjusting the sun.net.httpserver.maxReqHeaders property.\n\nIt was discovered that the Java Sound component did not properly\ncheck buffer boundaries. A remote attacker could use this to cause\na denial of service or view confidential data. (CVE-2011-3563)\n\nIt was discovered that the Java2D implementation does not properly\ncheck graphics rendering objects before passing them to the native\nrenderer. A remote attacker could use this to cause a denial of\nservice or to bypass Java sandbox restrictions. (CVE-2012-0497)\n\nIt was discovered that an off-by-one error exists in the Java ZIP\nfile processing code. An attacker could us this to cause a denial of\nservice through a maliciously crafted ZIP file. (CVE-2012-0501)\n\nIt was discovered that the Java AWT KeyboardFocusManager did not\nproperly enforce keyboard focus security policy. A remote attacker\ncould use this with an untrusted application or applet to grab keyboard\nfocus and possibly expose confidential data. (CVE-2012-0502)\n\nIt was discovered that the Java TimeZone class did not properly enforce\nsecurity policy around setting the default time zone. A remote attacker\ncould use this with an untrusted application or applet to set a new\ndefault time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n\nIt was discovered the Java ObjectStreamClass did not throw\nan accurately identifiable exception when a deserialization\nfailure occurred. A remote attacker could use this with\nan untrusted application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0505)\n\nIt was discovered that the Java CORBA implementation did not properly\nprotect repository identifiers on certain CORBA objects. A remote\nattacker could use this to corrupt object data. (CVE-2012-0506)\n\nIt was discovered that the Java AtomicReferenceArray class\nimplementation did not properly check if an array was of\nthe expected Object[] type. A remote attacker could use this\nwith a malicious application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6","version":"6b22-1.10.6-0ubuntu1","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"icedtea-6-jre-jamvm","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-headless","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-zero","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"}],"oneiric":[{"name":"openjdk-6","version":"6b23~pre11-0ubuntu1.11.10.2","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"icedtea-6-jre-jamvm","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-headless","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-zero","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-lib","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"}]},"type":"USN","cves_ids":["CVE-2011-3563","CVE-2012-0507","CVE-2011-5035","CVE-2012-0497","CVE-2012-0501","CVE-2012-0502","CVE-2012-0503","CVE-2012-0505","CVE-2012-0506"]},{"id":"USN-1373-2","title":"OpenJDK 6 (ARM) vulnerabilities","summary":"Multiple vulnerabilities in OpenJDK 6 for the ARM architecture have\nbeen fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-03-01T09:07:31.675963","description":"USN 1373-1 fixed vulnerabilities in OpenJDK 6 in Ubuntu 10.04 LTS,\nUbuntu 10.10 and Ubuntu 11.04 for all architectures except for ARM\n(armel). This provides the corresponding OpenJDK 6 update for use\nwith the ARM (armel) architecture in Ubuntu 10.04 LTS, Ubuntu 10.10\nand Ubuntu 11.04.\n\nOriginal advisory details:\n\n It was discovered that the Java HttpServer class did not limit the\n number of headers read from a HTTP request. A remote attacker could\n cause a denial of service by sending special requests that trigger\n hash collisions predictably. (CVE-2011-5035)\n \n ATTENTION: this update changes previous Java HttpServer class behavior\n by limiting the number of request headers to 200. This may be increased\n by adjusting the sun.net.httpserver.maxReqHeaders property.\n \n It was discovered that the Java Sound component did not properly\n check buffer boundaries. A remote attacker could use this to cause\n a denial of service or view confidential data. (CVE-2011-3563)\n \n It was discovered that the Java2D implementation does not properly\n check graphics rendering objects before passing them to the native\n renderer. A remote attacker could use this to cause a denial of\n service or to bypass Java sandbox restrictions. (CVE-2012-0497)\n \n It was discovered that an off-by-one error exists in the Java ZIP\n file processing code. An attacker could us this to cause a denial of\n service through a maliciously crafted ZIP file. (CVE-2012-0501)\n \n It was discovered that the Java AWT KeyboardFocusManager did not\n properly enforce keyboard focus security policy. A remote attacker\n could use this with an untrusted application or applet to grab keyboard\n focus and possibly expose confidential data. (CVE-2012-0502)\n \n It was discovered that the Java TimeZone class did not properly enforce\n security policy around setting the default time zone. A remote attacker\n could use this with an untrusted application or applet to set a new\n default time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n \n It was discovered the Java ObjectStreamClass did not throw\n an accurately identifiable exception when a deserialization\n failure occurred. A remote attacker could use this with\n an untrusted application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0505)\n \n It was discovered that the Java CORBA implementation did not properly\n protect repository identifiers on certain CORBA objects. A remote\n attacker could use this to corrupt object data. (CVE-2012-0506)\n \n It was discovered that the Java AtomicReferenceArray class\n implementation did not properly check if an array was of\n the expected Object[] type. A remote attacker could use this\n with a malicious application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~11.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-jamvm","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"}]},"type":"USN","cves_ids":["CVE-2012-0501","CVE-2012-0497","CVE-2011-5035","CVE-2012-0503","CVE-2011-3563","CVE-2012-0507","CVE-2012-0502","CVE-2012-0505","CVE-2012-0506"]}]},{"id":"CVE-2012-0502","published":"2012-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) component\nin Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, 5.0\nUpdate 33 and earlier, and 1.4.2_35 and earlier allows remote untrusted\nJava Web Start applications and untrusted Java applets to affect\nconfidentiality and availability, related to AWT.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"in natty+, NetX and the plugin moved to the icedtea-web package"},{"author":"sbeattie","note":"red hat description:\nA flaw was found in the AWT KeyboardFocusManager that could allow\nan untrusted Java application or applet to acquire keyboard focus\nand possibly steal sensitive information."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1373-1","https://ubuntu.com/security/notices/USN-1373-2","https://www.cve.org/CVERecord?id=CVE-2012-0502"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[],"icedtea-web":[],"openjdk-7":[]},"tags":{},"packages":[{"name":"icedtea-web","source":"https://ubuntu.com/security/cve?package=icedtea-web","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=icedtea-web","debian":"https://tracker.debian.org/pkg/icedtea-web","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b22-1.10.6-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b23~pre11-0ubuntu1.11.10.2","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.13-0ubuntu1~11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-7","source":"https://ubuntu.com/security/cve?package=openjdk-7","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-7","debian":"https://tracker.debian.org/pkg/openjdk-7","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"7u9-2.3.3-0ubuntu1~11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1373-1","USN-1373-2"],"notices":[{"id":"USN-1373-1","title":"OpenJDK 6 vulnerabilities","summary":"Multiple OpenJDK 6 vulnerabilities have been fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-02-24T10:35:32.518143","description":"It was discovered that the Java HttpServer class did not limit the\nnumber of headers read from a HTTP request. A remote attacker could\ncause a denial of service by sending special requests that trigger\nhash collisions predictably. (CVE-2011-5035)\n\nATTENTION: this update changes previous Java HttpServer class behavior\nby limiting the number of request headers to 200. This may be increased\nby adjusting the sun.net.httpserver.maxReqHeaders property.\n\nIt was discovered that the Java Sound component did not properly\ncheck buffer boundaries. A remote attacker could use this to cause\na denial of service or view confidential data. (CVE-2011-3563)\n\nIt was discovered that the Java2D implementation does not properly\ncheck graphics rendering objects before passing them to the native\nrenderer. A remote attacker could use this to cause a denial of\nservice or to bypass Java sandbox restrictions. (CVE-2012-0497)\n\nIt was discovered that an off-by-one error exists in the Java ZIP\nfile processing code. An attacker could us this to cause a denial of\nservice through a maliciously crafted ZIP file. (CVE-2012-0501)\n\nIt was discovered that the Java AWT KeyboardFocusManager did not\nproperly enforce keyboard focus security policy. A remote attacker\ncould use this with an untrusted application or applet to grab keyboard\nfocus and possibly expose confidential data. (CVE-2012-0502)\n\nIt was discovered that the Java TimeZone class did not properly enforce\nsecurity policy around setting the default time zone. A remote attacker\ncould use this with an untrusted application or applet to set a new\ndefault time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n\nIt was discovered the Java ObjectStreamClass did not throw\nan accurately identifiable exception when a deserialization\nfailure occurred. A remote attacker could use this with\nan untrusted application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0505)\n\nIt was discovered that the Java CORBA implementation did not properly\nprotect repository identifiers on certain CORBA objects. A remote\nattacker could use this to corrupt object data. (CVE-2012-0506)\n\nIt was discovered that the Java AtomicReferenceArray class\nimplementation did not properly check if an array was of\nthe expected Object[] type. A remote attacker could use this\nwith a malicious application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6","version":"6b22-1.10.6-0ubuntu1","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"icedtea-6-jre-jamvm","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-headless","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-zero","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"}],"oneiric":[{"name":"openjdk-6","version":"6b23~pre11-0ubuntu1.11.10.2","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"icedtea-6-jre-jamvm","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-headless","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-zero","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-lib","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"}]},"type":"USN","cves_ids":["CVE-2011-3563","CVE-2012-0507","CVE-2011-5035","CVE-2012-0497","CVE-2012-0501","CVE-2012-0502","CVE-2012-0503","CVE-2012-0505","CVE-2012-0506"]},{"id":"USN-1373-2","title":"OpenJDK 6 (ARM) vulnerabilities","summary":"Multiple vulnerabilities in OpenJDK 6 for the ARM architecture have\nbeen fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-03-01T09:07:31.675963","description":"USN 1373-1 fixed vulnerabilities in OpenJDK 6 in Ubuntu 10.04 LTS,\nUbuntu 10.10 and Ubuntu 11.04 for all architectures except for ARM\n(armel). This provides the corresponding OpenJDK 6 update for use\nwith the ARM (armel) architecture in Ubuntu 10.04 LTS, Ubuntu 10.10\nand Ubuntu 11.04.\n\nOriginal advisory details:\n\n It was discovered that the Java HttpServer class did not limit the\n number of headers read from a HTTP request. A remote attacker could\n cause a denial of service by sending special requests that trigger\n hash collisions predictably. (CVE-2011-5035)\n \n ATTENTION: this update changes previous Java HttpServer class behavior\n by limiting the number of request headers to 200. This may be increased\n by adjusting the sun.net.httpserver.maxReqHeaders property.\n \n It was discovered that the Java Sound component did not properly\n check buffer boundaries. A remote attacker could use this to cause\n a denial of service or view confidential data. (CVE-2011-3563)\n \n It was discovered that the Java2D implementation does not properly\n check graphics rendering objects before passing them to the native\n renderer. A remote attacker could use this to cause a denial of\n service or to bypass Java sandbox restrictions. (CVE-2012-0497)\n \n It was discovered that an off-by-one error exists in the Java ZIP\n file processing code. An attacker could us this to cause a denial of\n service through a maliciously crafted ZIP file. (CVE-2012-0501)\n \n It was discovered that the Java AWT KeyboardFocusManager did not\n properly enforce keyboard focus security policy. A remote attacker\n could use this with an untrusted application or applet to grab keyboard\n focus and possibly expose confidential data. (CVE-2012-0502)\n \n It was discovered that the Java TimeZone class did not properly enforce\n security policy around setting the default time zone. A remote attacker\n could use this with an untrusted application or applet to set a new\n default time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n \n It was discovered the Java ObjectStreamClass did not throw\n an accurately identifiable exception when a deserialization\n failure occurred. A remote attacker could use this with\n an untrusted application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0505)\n \n It was discovered that the Java CORBA implementation did not properly\n protect repository identifiers on certain CORBA objects. A remote\n attacker could use this to corrupt object data. (CVE-2012-0506)\n \n It was discovered that the Java AtomicReferenceArray class\n implementation did not properly check if an array was of\n the expected Object[] type. A remote attacker could use this\n with a malicious application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~11.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-jamvm","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"}]},"type":"USN","cves_ids":["CVE-2012-0501","CVE-2012-0497","CVE-2011-5035","CVE-2012-0503","CVE-2011-3563","CVE-2012-0507","CVE-2012-0502","CVE-2012-0505","CVE-2012-0506"]}]},{"id":"CVE-2012-0501","published":"2012-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) component\nin Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, and 5.0\nUpdate 33 and earlier allows remote attackers to affect availability via\nunknown vectors.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"in natty+, NetX and the plugin moved to the icedtea-web package"},{"author":"sbeattie","note":"red hat description:\nAn off-by-one flaw, causing a stack overflow, was found in the\nunpacker for ZIP files. A specially-crafted ZIP archive could\ncause the Java Virtual Machine (JVM) to crash when opened."}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1373-1","https://ubuntu.com/security/notices/USN-1373-2","https://www.cve.org/CVERecord?id=CVE-2012-0501"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[],"icedtea-web":[],"openjdk-7":[]},"tags":{},"packages":[{"name":"icedtea-web","source":"https://ubuntu.com/security/cve?package=icedtea-web","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=icedtea-web","debian":"https://tracker.debian.org/pkg/icedtea-web","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b22-1.10.6-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b23~pre11-0ubuntu1.11.10.2","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.13-0ubuntu1~11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-7","source":"https://ubuntu.com/security/cve?package=openjdk-7","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-7","debian":"https://tracker.debian.org/pkg/openjdk-7","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"7u9-2.3.3-0ubuntu1~11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1373-1","USN-1373-2"],"notices":[{"id":"USN-1373-1","title":"OpenJDK 6 vulnerabilities","summary":"Multiple OpenJDK 6 vulnerabilities have been fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-02-24T10:35:32.518143","description":"It was discovered that the Java HttpServer class did not limit the\nnumber of headers read from a HTTP request. A remote attacker could\ncause a denial of service by sending special requests that trigger\nhash collisions predictably. (CVE-2011-5035)\n\nATTENTION: this update changes previous Java HttpServer class behavior\nby limiting the number of request headers to 200. This may be increased\nby adjusting the sun.net.httpserver.maxReqHeaders property.\n\nIt was discovered that the Java Sound component did not properly\ncheck buffer boundaries. A remote attacker could use this to cause\na denial of service or view confidential data. (CVE-2011-3563)\n\nIt was discovered that the Java2D implementation does not properly\ncheck graphics rendering objects before passing them to the native\nrenderer. A remote attacker could use this to cause a denial of\nservice or to bypass Java sandbox restrictions. (CVE-2012-0497)\n\nIt was discovered that an off-by-one error exists in the Java ZIP\nfile processing code. An attacker could us this to cause a denial of\nservice through a maliciously crafted ZIP file. (CVE-2012-0501)\n\nIt was discovered that the Java AWT KeyboardFocusManager did not\nproperly enforce keyboard focus security policy. A remote attacker\ncould use this with an untrusted application or applet to grab keyboard\nfocus and possibly expose confidential data. (CVE-2012-0502)\n\nIt was discovered that the Java TimeZone class did not properly enforce\nsecurity policy around setting the default time zone. A remote attacker\ncould use this with an untrusted application or applet to set a new\ndefault time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n\nIt was discovered the Java ObjectStreamClass did not throw\nan accurately identifiable exception when a deserialization\nfailure occurred. A remote attacker could use this with\nan untrusted application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0505)\n\nIt was discovered that the Java CORBA implementation did not properly\nprotect repository identifiers on certain CORBA objects. A remote\nattacker could use this to corrupt object data. (CVE-2012-0506)\n\nIt was discovered that the Java AtomicReferenceArray class\nimplementation did not properly check if an array was of\nthe expected Object[] type. A remote attacker could use this\nwith a malicious application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6","version":"6b22-1.10.6-0ubuntu1","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"icedtea-6-jre-jamvm","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-headless","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-zero","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"}],"oneiric":[{"name":"openjdk-6","version":"6b23~pre11-0ubuntu1.11.10.2","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"icedtea-6-jre-jamvm","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-headless","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-zero","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-lib","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"}]},"type":"USN","cves_ids":["CVE-2011-3563","CVE-2012-0507","CVE-2011-5035","CVE-2012-0497","CVE-2012-0501","CVE-2012-0502","CVE-2012-0503","CVE-2012-0505","CVE-2012-0506"]},{"id":"USN-1373-2","title":"OpenJDK 6 (ARM) vulnerabilities","summary":"Multiple vulnerabilities in OpenJDK 6 for the ARM architecture have\nbeen fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-03-01T09:07:31.675963","description":"USN 1373-1 fixed vulnerabilities in OpenJDK 6 in Ubuntu 10.04 LTS,\nUbuntu 10.10 and Ubuntu 11.04 for all architectures except for ARM\n(armel). This provides the corresponding OpenJDK 6 update for use\nwith the ARM (armel) architecture in Ubuntu 10.04 LTS, Ubuntu 10.10\nand Ubuntu 11.04.\n\nOriginal advisory details:\n\n It was discovered that the Java HttpServer class did not limit the\n number of headers read from a HTTP request. A remote attacker could\n cause a denial of service by sending special requests that trigger\n hash collisions predictably. (CVE-2011-5035)\n \n ATTENTION: this update changes previous Java HttpServer class behavior\n by limiting the number of request headers to 200. This may be increased\n by adjusting the sun.net.httpserver.maxReqHeaders property.\n \n It was discovered that the Java Sound component did not properly\n check buffer boundaries. A remote attacker could use this to cause\n a denial of service or view confidential data. (CVE-2011-3563)\n \n It was discovered that the Java2D implementation does not properly\n check graphics rendering objects before passing them to the native\n renderer. A remote attacker could use this to cause a denial of\n service or to bypass Java sandbox restrictions. (CVE-2012-0497)\n \n It was discovered that an off-by-one error exists in the Java ZIP\n file processing code. An attacker could us this to cause a denial of\n service through a maliciously crafted ZIP file. (CVE-2012-0501)\n \n It was discovered that the Java AWT KeyboardFocusManager did not\n properly enforce keyboard focus security policy. A remote attacker\n could use this with an untrusted application or applet to grab keyboard\n focus and possibly expose confidential data. (CVE-2012-0502)\n \n It was discovered that the Java TimeZone class did not properly enforce\n security policy around setting the default time zone. A remote attacker\n could use this with an untrusted application or applet to set a new\n default time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n \n It was discovered the Java ObjectStreamClass did not throw\n an accurately identifiable exception when a deserialization\n failure occurred. A remote attacker could use this with\n an untrusted application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0505)\n \n It was discovered that the Java CORBA implementation did not properly\n protect repository identifiers on certain CORBA objects. A remote\n attacker could use this to corrupt object data. (CVE-2012-0506)\n \n It was discovered that the Java AtomicReferenceArray class\n implementation did not properly check if an array was of\n the expected Object[] type. A remote attacker could use this\n with a malicious application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~11.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-jamvm","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"}]},"type":"USN","cves_ids":["CVE-2012-0501","CVE-2012-0497","CVE-2011-5035","CVE-2012-0503","CVE-2011-3563","CVE-2012-0507","CVE-2012-0502","CVE-2012-0505","CVE-2012-0506"]}]},{"id":"CVE-2012-0497","published":"2012-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) component\nin Oracle Java SE 7 Update 2 and earlier, and 6 Update 30 and earlier,\nallows remote attackers to affect confidentiality, integrity, and\navailability via unknown vectors related to 2D.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"in natty+, NetX and the plugin moved to the icedtea-web package"},{"author":"sbeattie","note":"red hat description:\nIt was discovered that Java2D did not properly check\ngraphics rendering objects before passing them to the native\nrenderer. Malicious input, or an untrusted Java application or\napplet could use this flaw to crash the Java Virtual Machine (JVM),\nor bypass Java sandbox restrictions."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1373-1","https://ubuntu.com/security/notices/USN-1373-2","https://www.cve.org/CVERecord?id=CVE-2012-0497"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[],"icedtea-web":[],"openjdk-7":[]},"tags":{},"packages":[{"name":"icedtea-web","source":"https://ubuntu.com/security/cve?package=icedtea-web","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=icedtea-web","debian":"https://tracker.debian.org/pkg/icedtea-web","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b22-1.10.6-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b23~pre11-0ubuntu1.11.10.2","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.13-0ubuntu1~11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-7","source":"https://ubuntu.com/security/cve?package=openjdk-7","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-7","debian":"https://tracker.debian.org/pkg/openjdk-7","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"7u9-2.3.3-0ubuntu1~11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"7~u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1373-1","USN-1373-2"],"notices":[{"id":"USN-1373-1","title":"OpenJDK 6 vulnerabilities","summary":"Multiple OpenJDK 6 vulnerabilities have been fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-02-24T10:35:32.518143","description":"It was discovered that the Java HttpServer class did not limit the\nnumber of headers read from a HTTP request. A remote attacker could\ncause a denial of service by sending special requests that trigger\nhash collisions predictably. (CVE-2011-5035)\n\nATTENTION: this update changes previous Java HttpServer class behavior\nby limiting the number of request headers to 200. This may be increased\nby adjusting the sun.net.httpserver.maxReqHeaders property.\n\nIt was discovered that the Java Sound component did not properly\ncheck buffer boundaries. A remote attacker could use this to cause\na denial of service or view confidential data. (CVE-2011-3563)\n\nIt was discovered that the Java2D implementation does not properly\ncheck graphics rendering objects before passing them to the native\nrenderer. A remote attacker could use this to cause a denial of\nservice or to bypass Java sandbox restrictions. (CVE-2012-0497)\n\nIt was discovered that an off-by-one error exists in the Java ZIP\nfile processing code. An attacker could us this to cause a denial of\nservice through a maliciously crafted ZIP file. (CVE-2012-0501)\n\nIt was discovered that the Java AWT KeyboardFocusManager did not\nproperly enforce keyboard focus security policy. A remote attacker\ncould use this with an untrusted application or applet to grab keyboard\nfocus and possibly expose confidential data. (CVE-2012-0502)\n\nIt was discovered that the Java TimeZone class did not properly enforce\nsecurity policy around setting the default time zone. A remote attacker\ncould use this with an untrusted application or applet to set a new\ndefault time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n\nIt was discovered the Java ObjectStreamClass did not throw\nan accurately identifiable exception when a deserialization\nfailure occurred. A remote attacker could use this with\nan untrusted application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0505)\n\nIt was discovered that the Java CORBA implementation did not properly\nprotect repository identifiers on certain CORBA objects. A remote\nattacker could use this to corrupt object data. (CVE-2012-0506)\n\nIt was discovered that the Java AtomicReferenceArray class\nimplementation did not properly check if an array was of\nthe expected Object[] type. A remote attacker could use this\nwith a malicious application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6","version":"6b22-1.10.6-0ubuntu1","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"icedtea-6-jre-jamvm","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-headless","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-zero","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"}],"oneiric":[{"name":"openjdk-6","version":"6b23~pre11-0ubuntu1.11.10.2","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"icedtea-6-jre-jamvm","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-headless","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-zero","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-lib","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"}]},"type":"USN","cves_ids":["CVE-2011-3563","CVE-2012-0507","CVE-2011-5035","CVE-2012-0497","CVE-2012-0501","CVE-2012-0502","CVE-2012-0503","CVE-2012-0505","CVE-2012-0506"]},{"id":"USN-1373-2","title":"OpenJDK 6 (ARM) vulnerabilities","summary":"Multiple vulnerabilities in OpenJDK 6 for the ARM architecture have\nbeen fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-03-01T09:07:31.675963","description":"USN 1373-1 fixed vulnerabilities in OpenJDK 6 in Ubuntu 10.04 LTS,\nUbuntu 10.10 and Ubuntu 11.04 for all architectures except for ARM\n(armel). This provides the corresponding OpenJDK 6 update for use\nwith the ARM (armel) architecture in Ubuntu 10.04 LTS, Ubuntu 10.10\nand Ubuntu 11.04.\n\nOriginal advisory details:\n\n It was discovered that the Java HttpServer class did not limit the\n number of headers read from a HTTP request. A remote attacker could\n cause a denial of service by sending special requests that trigger\n hash collisions predictably. (CVE-2011-5035)\n \n ATTENTION: this update changes previous Java HttpServer class behavior\n by limiting the number of request headers to 200. This may be increased\n by adjusting the sun.net.httpserver.maxReqHeaders property.\n \n It was discovered that the Java Sound component did not properly\n check buffer boundaries. A remote attacker could use this to cause\n a denial of service or view confidential data. (CVE-2011-3563)\n \n It was discovered that the Java2D implementation does not properly\n check graphics rendering objects before passing them to the native\n renderer. A remote attacker could use this to cause a denial of\n service or to bypass Java sandbox restrictions. (CVE-2012-0497)\n \n It was discovered that an off-by-one error exists in the Java ZIP\n file processing code. An attacker could us this to cause a denial of\n service through a maliciously crafted ZIP file. (CVE-2012-0501)\n \n It was discovered that the Java AWT KeyboardFocusManager did not\n properly enforce keyboard focus security policy. A remote attacker\n could use this with an untrusted application or applet to grab keyboard\n focus and possibly expose confidential data. (CVE-2012-0502)\n \n It was discovered that the Java TimeZone class did not properly enforce\n security policy around setting the default time zone. A remote attacker\n could use this with an untrusted application or applet to set a new\n default time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n \n It was discovered the Java ObjectStreamClass did not throw\n an accurately identifiable exception when a deserialization\n failure occurred. A remote attacker could use this with\n an untrusted application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0505)\n \n It was discovered that the Java CORBA implementation did not properly\n protect repository identifiers on certain CORBA objects. A remote\n attacker could use this to corrupt object data. (CVE-2012-0506)\n \n It was discovered that the Java AtomicReferenceArray class\n implementation did not properly check if an array was of\n the expected Object[] type. A remote attacker could use this\n with a malicious application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~11.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-jamvm","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"}]},"type":"USN","cves_ids":["CVE-2012-0501","CVE-2012-0497","CVE-2011-5035","CVE-2012-0503","CVE-2011-3563","CVE-2012-0507","CVE-2012-0502","CVE-2012-0505","CVE-2012-0506"]}]},{"id":"CVE-2012-0212","published":"2012-02-15T00:00:00","updated_at":"2025-05-26T12:47:39.637718+00:00","description":"\ndebdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4\nallows remote attackers to execute arbitrary code via shell metacharacters\nin the file name argument.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://security-tracker.debian.org/tracker/DSA-2409-1","https://ubuntu.com/security/notices/USN-1366-1","https://www.cve.org/CVERecord?id=CVE-2012-0212","https://ubuntu.com/security/notices/USN-1593-1"],"bugs":[""],"patches":{"devscripts":[]},"tags":{},"packages":[{"name":"devscripts","source":"https://ubuntu.com/security/cve?package=devscripts","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=devscripts","debian":"https://tracker.debian.org/pkg/devscripts","statuses":[{"release_codename":"hardy","status":"released","description":"2.10.11ubuntu5.8.04.5","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.10.61ubuntu5.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.10.67ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"2.10.69ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"2.11.1ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.10.69+squeeze2","component":null,"pocket":"security"}]}],"notices_ids":["USN-1366-1","USN-1593-1"],"notices":[{"id":"USN-1366-1","title":"devscripts vulnerabilities","summary":"debdiff, a part of devscripts, could be made to run programs as your login if\nit opened a specially crafted file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-02-15T17:02:35.067926","description":"Paul Wise discovered that debdiff did not properly sanitize its input when\nprocessing .dsc and .changes files. If debdiff processed a crafted file, an\nattacker could execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0210)\n\nRaphael Geissert discovered that debdiff did not properly sanitize its input\nwhen processing source packages. If debdiff processed an original source\ntarball, with crafted filenames in the top-level directory, an attacker could\nexecute arbitrary code with the privileges of the user invoking the program.\n(CVE-2012-0211)\n\nRaphael Geissert discovered that debdiff did not properly sanitize its input\nwhen processing filename parameters. If debdiff processed a crafted filename\nparameter, an attacker could execute arbitrary code with the privileges of the\nuser invoking the program. (CVE-2012-0212)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"devscripts","version":"2.10.11ubuntu5.8.04.5","description":"Scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.11ubuntu5.8.04.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.11ubuntu5.8.04.5"}],"lucid":[{"name":"devscripts","version":"2.10.61ubuntu5.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.61ubuntu5.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.61ubuntu5.1"}],"maverick":[{"name":"devscripts","version":"2.10.67ubuntu1.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.67ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.67ubuntu1.1"}],"natty":[{"name":"devscripts","version":"2.10.69ubuntu2.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.69ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.69ubuntu2.1"}],"oneiric":[{"name":"devscripts","version":"2.11.1ubuntu3.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.11.1ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.11.1ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2012-0210","CVE-2012-0211","CVE-2012-0212"]},{"id":"USN-1593-1","title":"devscripts vulnerabilities","summary":"Several security issues were fixed in devscripts.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-10-02T20:26:47.292018","description":"Raphael Geissert discovered that the debdiff.pl tool incorrectly handled\nshell metacharacters. If a user or automated system were tricked into\nprocessing a specially crafted filename, a remote attacher could possibly\nexecute arbitrary code. (CVE-2012-0212)\n\nRaphael Geissert discovered that the dscverify tool incorrectly escaped\narguments to external commands. If a user or automated system were tricked\ninto processing specially crafted files, a remote attacher could possibly\nexecute arbitrary code. (CVE-2012-2240)\n\nRaphael Geissert discovered that the dget tool incorrectly performed input\nvalidation. If a user or automated system were tricked into processing\nspecially crafted files, a remote attacher could delete arbitrary files.\n(CVE-2012-2241)\n\nRaphael Geissert discovered that the dget tool incorrectly escaped\narguments to external commands. If a user or automated system were tricked\ninto processing specially crafted files, a remote attacher could possibly\nexecute arbitrary code. This issue only affected Ubuntu 10.04 LTS and\nUbuntu 11.04. (CVE-2012-2242)\n\nJim Meyering discovered that the annotate-output tool incorrectly handled\ntemporary files. A local attacker could use this flaw to alter files being\nprocessed by the annotate-output tool. On Ubuntu 11.04 and later, this\nissue was mitigated by the Yama kernel symlink restrictions.\n(CVE-2012-3500)\n","is_hidden":false,"release_packages":{"precise":[{"name":"devscripts","version":"2.11.6ubuntu1.4","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.11.6ubuntu1.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.11.6ubuntu1.4"}],"lucid":[{"name":"devscripts","version":"2.10.61ubuntu5.3","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.61ubuntu5.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.61ubuntu5.3"}],"natty":[{"name":"devscripts","version":"2.10.69ubuntu2.2","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.69ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.69ubuntu2.2"}],"oneiric":[{"name":"devscripts","version":"2.11.1ubuntu3.2","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.11.1ubuntu3.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.11.1ubuntu3.2"}]},"type":"USN","cves_ids":["CVE-2012-0212","CVE-2012-2240","CVE-2012-2241","CVE-2012-2242","CVE-2012-3500"]}]},{"id":"CVE-2012-0211","published":"2012-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\ndebdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4\nallows remote attackers to execute arbitrary code via a crafted tarball\nfile name in the top-level directory of an original (.orig) source tarball\nof a source package.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://security-tracker.debian.org/tracker/DSA-2409-1","https://ubuntu.com/security/notices/USN-1366-1","https://www.cve.org/CVERecord?id=CVE-2012-0211"],"bugs":[""],"patches":{"devscripts":[]},"tags":{},"packages":[{"name":"devscripts","source":"https://ubuntu.com/security/cve?package=devscripts","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=devscripts","debian":"https://tracker.debian.org/pkg/devscripts","statuses":[{"release_codename":"hardy","status":"released","description":"2.10.11ubuntu5.8.04.5","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.10.61ubuntu5.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.10.67ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"2.10.69ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"2.11.1ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.10.69+squeeze2","component":null,"pocket":"security"}]}],"notices_ids":["USN-1366-1"],"notices":[{"id":"USN-1366-1","title":"devscripts vulnerabilities","summary":"debdiff, a part of devscripts, could be made to run programs as your login if\nit opened a specially crafted file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-02-15T17:02:35.067926","description":"Paul Wise discovered that debdiff did not properly sanitize its input when\nprocessing .dsc and .changes files. If debdiff processed a crafted file, an\nattacker could execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0210)\n\nRaphael Geissert discovered that debdiff did not properly sanitize its input\nwhen processing source packages. If debdiff processed an original source\ntarball, with crafted filenames in the top-level directory, an attacker could\nexecute arbitrary code with the privileges of the user invoking the program.\n(CVE-2012-0211)\n\nRaphael Geissert discovered that debdiff did not properly sanitize its input\nwhen processing filename parameters. If debdiff processed a crafted filename\nparameter, an attacker could execute arbitrary code with the privileges of the\nuser invoking the program. (CVE-2012-0212)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"devscripts","version":"2.10.11ubuntu5.8.04.5","description":"Scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.11ubuntu5.8.04.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.11ubuntu5.8.04.5"}],"lucid":[{"name":"devscripts","version":"2.10.61ubuntu5.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.61ubuntu5.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.61ubuntu5.1"}],"maverick":[{"name":"devscripts","version":"2.10.67ubuntu1.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.67ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.67ubuntu1.1"}],"natty":[{"name":"devscripts","version":"2.10.69ubuntu2.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.69ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.69ubuntu2.1"}],"oneiric":[{"name":"devscripts","version":"2.11.1ubuntu3.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.11.1ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.11.1ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2012-0210","CVE-2012-0211","CVE-2012-0212"]}]},{"id":"CVE-2012-0210","published":"2012-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\ndebdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4\nallows remote attackers to obtain system information and execute arbitrary\ncode via the file name in a (1) .dsc or (2) .changes file.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://security-tracker.debian.org/tracker/DSA-2409-1","https://ubuntu.com/security/notices/USN-1366-1","https://www.cve.org/CVERecord?id=CVE-2012-0210"],"bugs":[""],"patches":{"devscripts":[]},"tags":{},"packages":[{"name":"devscripts","source":"https://ubuntu.com/security/cve?package=devscripts","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=devscripts","debian":"https://tracker.debian.org/pkg/devscripts","statuses":[{"release_codename":"hardy","status":"released","description":"2.10.11ubuntu5.8.04.5","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.10.61ubuntu5.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.10.67ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"2.10.69ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"2.11.1ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.10.69+squeeze2","component":null,"pocket":"security"}]}],"notices_ids":["USN-1366-1"],"notices":[{"id":"USN-1366-1","title":"devscripts vulnerabilities","summary":"debdiff, a part of devscripts, could be made to run programs as your login if\nit opened a specially crafted file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-02-15T17:02:35.067926","description":"Paul Wise discovered that debdiff did not properly sanitize its input when\nprocessing .dsc and .changes files. If debdiff processed a crafted file, an\nattacker could execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0210)\n\nRaphael Geissert discovered that debdiff did not properly sanitize its input\nwhen processing source packages. If debdiff processed an original source\ntarball, with crafted filenames in the top-level directory, an attacker could\nexecute arbitrary code with the privileges of the user invoking the program.\n(CVE-2012-0211)\n\nRaphael Geissert discovered that debdiff did not properly sanitize its input\nwhen processing filename parameters. If debdiff processed a crafted filename\nparameter, an attacker could execute arbitrary code with the privileges of the\nuser invoking the program. (CVE-2012-0212)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"devscripts","version":"2.10.11ubuntu5.8.04.5","description":"Scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.11ubuntu5.8.04.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.11ubuntu5.8.04.5"}],"lucid":[{"name":"devscripts","version":"2.10.61ubuntu5.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.61ubuntu5.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.61ubuntu5.1"}],"maverick":[{"name":"devscripts","version":"2.10.67ubuntu1.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.67ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.67ubuntu1.1"}],"natty":[{"name":"devscripts","version":"2.10.69ubuntu2.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.10.69ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.69ubuntu2.1"}],"oneiric":[{"name":"devscripts","version":"2.11.1ubuntu3.1","description":"scripts to make the life of a Debian Package maintainer easier","is_source":true},{"name":"devscripts","version":"2.11.1ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.11.1ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2012-0210","CVE-2012-0211","CVE-2012-0212"]}]},{"id":"CVE-2011-3563","published":"2012-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) component\nin Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, 5.0\nUpdate 33 and earlier, and 1.4.2_35 and earlier allows remote attackers to\naffect confidentiality and availability via unknown vectors related to\nSound.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"in natty+, NetX and the plugin moved to the icedtea-web package"},{"author":"sbeattie","note":"red hat description:\nThe Java Sound component did not properly check buffer boundaries.\nMalicious input, or an untrusted Java application or applet could\nuse this flaw to cause the Java Virtual Machine (JVM) to crash or\ndisclose a portion of its memory."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1373-1","https://ubuntu.com/security/notices/USN-1373-2","https://www.cve.org/CVERecord?id=CVE-2011-3563"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[],"icedtea-web":[],"openjdk-7":[]},"tags":{},"packages":[{"name":"icedtea-web","source":"https://ubuntu.com/security/cve?package=icedtea-web","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=icedtea-web","debian":"https://tracker.debian.org/pkg/icedtea-web","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b22-1.10.6-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b23~pre11-0ubuntu1.11.10.2","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"6b24-1.11.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.13-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.13-0ubuntu1~10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.13-0ubuntu1~11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"openjdk-7","source":"https://ubuntu.com/security/cve?package=openjdk-7","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-7","debian":"https://tracker.debian.org/pkg/openjdk-7","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"7u9-2.3.3-0ubuntu1~11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"7u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"7u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"7u3-2.1-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1373-1","USN-1373-2"],"notices":[{"id":"USN-1373-1","title":"OpenJDK 6 vulnerabilities","summary":"Multiple OpenJDK 6 vulnerabilities have been fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-02-24T10:35:32.518143","description":"It was discovered that the Java HttpServer class did not limit the\nnumber of headers read from a HTTP request. A remote attacker could\ncause a denial of service by sending special requests that trigger\nhash collisions predictably. (CVE-2011-5035)\n\nATTENTION: this update changes previous Java HttpServer class behavior\nby limiting the number of request headers to 200. This may be increased\nby adjusting the sun.net.httpserver.maxReqHeaders property.\n\nIt was discovered that the Java Sound component did not properly\ncheck buffer boundaries. A remote attacker could use this to cause\na denial of service or view confidential data. (CVE-2011-3563)\n\nIt was discovered that the Java2D implementation does not properly\ncheck graphics rendering objects before passing them to the native\nrenderer. A remote attacker could use this to cause a denial of\nservice or to bypass Java sandbox restrictions. (CVE-2012-0497)\n\nIt was discovered that an off-by-one error exists in the Java ZIP\nfile processing code. An attacker could us this to cause a denial of\nservice through a maliciously crafted ZIP file. (CVE-2012-0501)\n\nIt was discovered that the Java AWT KeyboardFocusManager did not\nproperly enforce keyboard focus security policy. A remote attacker\ncould use this with an untrusted application or applet to grab keyboard\nfocus and possibly expose confidential data. (CVE-2012-0502)\n\nIt was discovered that the Java TimeZone class did not properly enforce\nsecurity policy around setting the default time zone. A remote attacker\ncould use this with an untrusted application or applet to set a new\ndefault time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n\nIt was discovered the Java ObjectStreamClass did not throw\nan accurately identifiable exception when a deserialization\nfailure occurred. A remote attacker could use this with\nan untrusted application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0505)\n\nIt was discovered that the Java CORBA implementation did not properly\nprotect repository identifiers on certain CORBA objects. A remote\nattacker could use this to corrupt object data. (CVE-2012-0506)\n\nIt was discovered that the Java AtomicReferenceArray class\nimplementation did not properly check if an array was of\nthe expected Object[] type. A remote attacker could use this\nwith a malicious application or applet to bypass Java sandbox\nrestrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b20-1.9.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6","version":"6b22-1.10.6-0ubuntu1","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"icedtea-6-jre-jamvm","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-headless","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-zero","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b22-1.10.6-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b22-1.10.6-0ubuntu1"}],"oneiric":[{"name":"openjdk-6","version":"6b23~pre11-0ubuntu1.11.10.2","description":"Open Source Java implementation","is_source":true},{"name":"icedtea-6-jre-cacao","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"icedtea-6-jre-jamvm","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-headless","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-zero","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"},{"name":"openjdk-6-jre-lib","version":"6b23~pre11-0ubuntu1.11.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b23~pre11-0ubuntu1.11.10.2"}]},"type":"USN","cves_ids":["CVE-2011-3563","CVE-2012-0507","CVE-2011-5035","CVE-2012-0497","CVE-2012-0501","CVE-2012-0502","CVE-2012-0503","CVE-2012-0505","CVE-2012-0506"]},{"id":"USN-1373-2","title":"OpenJDK 6 (ARM) vulnerabilities","summary":"Multiple vulnerabilities in OpenJDK 6 for the ARM architecture have\nbeen fixed.\n","instructions":"After a standard system update you need to restart any Java applications\nor applets to make all the necessary changes.\n","references":[],"published":"2012-03-01T09:07:31.675963","description":"USN 1373-1 fixed vulnerabilities in OpenJDK 6 in Ubuntu 10.04 LTS,\nUbuntu 10.10 and Ubuntu 11.04 for all architectures except for ARM\n(armel). This provides the corresponding OpenJDK 6 update for use\nwith the ARM (armel) architecture in Ubuntu 10.04 LTS, Ubuntu 10.10\nand Ubuntu 11.04.\n\nOriginal advisory details:\n\n It was discovered that the Java HttpServer class did not limit the\n number of headers read from a HTTP request. A remote attacker could\n cause a denial of service by sending special requests that trigger\n hash collisions predictably. (CVE-2011-5035)\n \n ATTENTION: this update changes previous Java HttpServer class behavior\n by limiting the number of request headers to 200. This may be increased\n by adjusting the sun.net.httpserver.maxReqHeaders property.\n \n It was discovered that the Java Sound component did not properly\n check buffer boundaries. A remote attacker could use this to cause\n a denial of service or view confidential data. (CVE-2011-3563)\n \n It was discovered that the Java2D implementation does not properly\n check graphics rendering objects before passing them to the native\n renderer. A remote attacker could use this to cause a denial of\n service or to bypass Java sandbox restrictions. (CVE-2012-0497)\n \n It was discovered that an off-by-one error exists in the Java ZIP\n file processing code. An attacker could us this to cause a denial of\n service through a maliciously crafted ZIP file. (CVE-2012-0501)\n \n It was discovered that the Java AWT KeyboardFocusManager did not\n properly enforce keyboard focus security policy. A remote attacker\n could use this with an untrusted application or applet to grab keyboard\n focus and possibly expose confidential data. (CVE-2012-0502)\n \n It was discovered that the Java TimeZone class did not properly enforce\n security policy around setting the default time zone. A remote attacker\n could use this with an untrusted application or applet to set a new\n default time zone and bypass Java sandbox restrictions. (CVE-2012-0503)\n \n It was discovered the Java ObjectStreamClass did not throw\n an accurately identifiable exception when a deserialization\n failure occurred. A remote attacker could use this with\n an untrusted application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0505)\n \n It was discovered that the Java CORBA implementation did not properly\n protect repository identifiers on certain CORBA objects. A remote\n attacker could use this to corrupt object data. (CVE-2012-0506)\n \n It was discovered that the Java AtomicReferenceArray class\n implementation did not properly check if an array was of\n the expected Object[] type. A remote attacker could use this\n with a malicious application or applet to bypass Java sandbox\n restrictions. (CVE-2012-0507)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~10.10.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~10.10.1"}],"natty":[{"name":"openjdk-6b18","version":"6b18-1.8.13-0ubuntu1~11.04.1","description":"Open Source Java implementation","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-cacao","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"icedtea-6-jre-jamvm","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"},{"name":"openjdk-6-jre-zero","version":"6b18-1.8.13-0ubuntu1~11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.13-0ubuntu1~11.04.1"}]},"type":"USN","cves_ids":["CVE-2012-0501","CVE-2012-0497","CVE-2011-5035","CVE-2012-0503","CVE-2011-3563","CVE-2012-0507","CVE-2012-0502","CVE-2012-0505","CVE-2012-0506"]}]},{"id":"CVE-2012-1066","published":"2012-02-14T17:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nCross-site scripting (XSS) vulnerability in the template module in\nSmartyCMS 0.9.4 allows remote attackers to inject arbitrary web script or\nHTML via the title bar.","ubuntu_description":"","notes":[{"author":"sbeattie","note":"needs triage to discover whether it only affects smartyCMS or\nthe smarty template engine that smartyCMS is based on."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-1066"],"bugs":[""],"patches":{"smarty":[],"moodle":[],"gallery2":[]},"tags":{},"packages":[{"name":"gallery2","source":"https://ubuntu.com/security/cve?package=gallery2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gallery2","debian":"https://tracker.debian.org/pkg/gallery2","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"moodle","source":"https://ubuntu.com/security/cve?package=moodle","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=moodle","debian":"https://tracker.debian.org/pkg/moodle","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"vivid","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"uses system smarty","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [uses system smarty]","component":null,"pocket":"security"}]},{"name":"smarty","source":"https://ubuntu.com/security/cve?package=smarty","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=smarty","debian":"https://tracker.debian.org/pkg/smarty","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-0789","published":"2012-02-14T15:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMemory leak in the timezone functionality in PHP before 5.3.9 allows remote\nattackers to cause a denial of service (memory consumption) by triggering\nmany strtotime function calls, which are not properly handled by the\nphp_date_parse_tzfile cache.","ubuntu_description":"","notes":[{"author":"sbeattie","note":"patch is invasive and changes some interfaces, likely to\nintroduce regressions"},{"author":"mdeslaur","note":"too intrusive to fix, marking as \"ignored\""}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://openwall.com/lists/oss-security/2012/01/20/3","https://www.cve.org/CVERecord?id=CVE-2012-0789"],"bugs":["https://bugs.php.net/bug.php?id=53502"],"patches":{"php5":["upstream: http://svn.php.net/viewvc?view=revision&revision=320481"]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"5.3.10-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.3.9","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-1061","published":"2012-02-14T00:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nSQL injection vulnerability in GForge Advanced Server 6.0.0 and other\nversions before 6.0.1 allows remote attackers to execute arbitrary SQL\ncommands via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2012-1061"],"bugs":[""],"patches":{"gforge":[],"fusionforge":[]},"tags":{},"packages":[{"name":"fusionforge","source":"https://ubuntu.com/security/cve?package=fusionforge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=fusionforge","debian":"https://tracker.debian.org/pkg/fusionforge","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.0.1","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"","component":null,"pocket":"security"}]},{"name":"gforge","source":"https://ubuntu.com/security/cve?package=gforge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gforge","debian":"https://tracker.debian.org/pkg/gforge","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2012-0859","published":"2012-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe render_line function in the vorbis codec (vorbis.c) in libavcodec in\nFFmpeg before 0.9.1 allows remote attackers to cause a denial of service\n(application crash) and possibly execute arbitrary code via a crafted\nVorbis file, related to a large multiplier. NOTE: this vulnerability\nexists because of an incomplete fix for CVE-2011-3893.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2012/02/14/4","https://ubuntu.com/security/notices/USN-1479-1","https://ubuntu.com/security/notices/USN-1478-1","https://www.cve.org/CVERecord?id=CVE-2012-0859"],"bugs":[""],"patches":{"ffmpeg":["upstream: 6fcf2bb8af0e7d6bb179e71e67e5fab8ef0d2ec2"],"ffmpeg-extra":[],"libav":[],"libav-extra":[]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:0.5.9-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.5.8","component":null,"pocket":"security"}]},{"name":"ffmpeg-extra","source":"https://ubuntu.com/security/cve?package=ffmpeg-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg-extra","debian":"https://tracker.debian.org/pkg/ffmpeg-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libav","source":"https://ubuntu.com/security/cve?package=libav","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav","debian":"https://tracker.debian.org/pkg/libav","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"4:0.6.6-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"4:0.7.6-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.6.5,0.7.5,0.8.1","component":null,"pocket":"security"}]},{"name":"libav-extra","source":"https://ubuntu.com/security/cve?package=libav-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav-extra","debian":"https://tracker.debian.org/pkg/libav-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1478-1","USN-1479-1"],"notices":[{"id":"USN-1478-1","title":"Libav vulnerabilities","summary":"Libav could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release, which includes additional bug\nfixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:42:11.685973","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed Kega Game Video (KGV1) files. If a user were\ntricked into opening a crafted Kega Game Video (KGV1) file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program. This\nissue only affected Ubuntu 11.04 and Ubuntu 11.10. (CVE-2011-3945)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 11.04 and Ubuntu 11.10. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3952)\n\nJeong Wook Oh discovered that Libav incorrectly handled certain malformed\nASF files. If a user were tricked into opening a crafted ASF file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.10. (CVE-2011-4031)\n\nIt was discovered that Libav incorrectly handled certain malformed\nWestwood SNDx files. If a user were tricked into opening a crafted Westwood\nSNDx file, an attacker could cause a denial of service via application\ncrash, or possibly execute arbitrary code with the privileges of the user\ninvoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2012-0848)\n\nDiana Elena Muscalu discovered that Libav incorrectly handled certain\nmalformed AAC files. If a user were tricked into opening a crafted AAC\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0850)\n\nIt was discovered that Libav incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that Libav incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0852)\n\nIt was discovered that Libav incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0853)\n\nIt was discovered that Libav incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0858)\n\nIt was discovered that Libav incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0859)\n\nFabian Yamaguchi discovered that Libav incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"precise":[{"name":"libav","version":"4:0.8.3-0ubuntu0.12.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"},{"name":"libavcodec53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"}],"natty":[{"name":"libav","version":"4:0.6.6-0ubuntu0.11.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"},{"name":"libavcodec52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"}],"oneiric":[{"name":"libav","version":"4:0.7.6-0ubuntu0.11.10.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"},{"name":"libavcodec53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3945","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2011-4031","CVE-2012-0848","CVE-2012-0850","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]},{"id":"USN-1479-1","title":"FFmpeg vulnerabilities","summary":"FFmpeg could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release of Libav, which includes additional\nbug fixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:52:42.491010","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3952)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0852)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0853)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0858)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0859)\n\nFabian Yamaguchi discovered that FFmpeg incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"ffmpeg","version":"4:0.5.9-0ubuntu0.10.04.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"},{"name":"libavcodec52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]}]},{"id":"CVE-2012-0858","published":"2012-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe Shorten codec (shorten.c) in libavcodec in FFmpeg 0.7.x before 0.7.12\nand 0.8.x before 0.8.11, and in Libav 0.5.x before 0.5.9, 0.6.x before\n0.6.6, 0.7.x before 0.7.5, and 0.8.x before 0.8.1, allows remote attackers\nto cause a denial of service (application crash) and possibly execute\narbitrary code via a crafted Shorten file, related to an \"invalid free\".","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"as of 2012-05-22, no equivalent fix in ffmpeg 0.5.x"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2012/02/14/4","https://ubuntu.com/security/notices/USN-1479-1","https://ubuntu.com/security/notices/USN-1478-1","https://www.cve.org/CVERecord?id=CVE-2012-0858"],"bugs":[""],"patches":{"ffmpeg":["upstream: 18bcfc912e48bf77a5202a0e24a3b884b9b2ff2c","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=204cb29b3c84a74cbcd059d353c70c8bdc567d98","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=9e5e2c2d010c05c10337e9c1ec9d0d61495e0c9c"],"ffmpeg-extra":[],"libav":["upstream: http://git.libav.org/?p=libav.git;a=commit;h=204cb29b3c84a74cbcd059d353c70c8bdc567d98","upstream: http://git.libav.org/?p=libav.git;a=commit;h=9e5e2c2d010c05c10337e9c1ec9d0d61495e0c9c"],"libav-extra":[]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:0.5.9-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"ffmpeg-extra","source":"https://ubuntu.com/security/cve?package=ffmpeg-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg-extra","debian":"https://tracker.debian.org/pkg/ffmpeg-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libav","source":"https://ubuntu.com/security/cve?package=libav","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav","debian":"https://tracker.debian.org/pkg/libav","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"4:0.6.6-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"4:0.7.6-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.6.6,0.7.5,0.8.1","component":null,"pocket":"security"}]},{"name":"libav-extra","source":"https://ubuntu.com/security/cve?package=libav-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav-extra","debian":"https://tracker.debian.org/pkg/libav-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1478-1","USN-1479-1"],"notices":[{"id":"USN-1478-1","title":"Libav vulnerabilities","summary":"Libav could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release, which includes additional bug\nfixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:42:11.685973","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed Kega Game Video (KGV1) files. If a user were\ntricked into opening a crafted Kega Game Video (KGV1) file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program. This\nissue only affected Ubuntu 11.04 and Ubuntu 11.10. (CVE-2011-3945)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 11.04 and Ubuntu 11.10. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3952)\n\nJeong Wook Oh discovered that Libav incorrectly handled certain malformed\nASF files. If a user were tricked into opening a crafted ASF file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.10. (CVE-2011-4031)\n\nIt was discovered that Libav incorrectly handled certain malformed\nWestwood SNDx files. If a user were tricked into opening a crafted Westwood\nSNDx file, an attacker could cause a denial of service via application\ncrash, or possibly execute arbitrary code with the privileges of the user\ninvoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2012-0848)\n\nDiana Elena Muscalu discovered that Libav incorrectly handled certain\nmalformed AAC files. If a user were tricked into opening a crafted AAC\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0850)\n\nIt was discovered that Libav incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that Libav incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0852)\n\nIt was discovered that Libav incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0853)\n\nIt was discovered that Libav incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0858)\n\nIt was discovered that Libav incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0859)\n\nFabian Yamaguchi discovered that Libav incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"precise":[{"name":"libav","version":"4:0.8.3-0ubuntu0.12.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"},{"name":"libavcodec53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"}],"natty":[{"name":"libav","version":"4:0.6.6-0ubuntu0.11.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"},{"name":"libavcodec52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"}],"oneiric":[{"name":"libav","version":"4:0.7.6-0ubuntu0.11.10.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"},{"name":"libavcodec53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3945","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2011-4031","CVE-2012-0848","CVE-2012-0850","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]},{"id":"USN-1479-1","title":"FFmpeg vulnerabilities","summary":"FFmpeg could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release of Libav, which includes additional\nbug fixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:52:42.491010","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3952)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0852)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0853)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0858)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0859)\n\nFabian Yamaguchi discovered that FFmpeg incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"ffmpeg","version":"4:0.5.9-0ubuntu0.10.04.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"},{"name":"libavcodec52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]}]},{"id":"CVE-2012-0853","published":"2012-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe decodeTonalComponents function in the Actrac3 codec (atrac3.c) in\nlibavcodec in FFmpeg 0.7.x before 0.7.12, and 0.8.x before 0.8.11; and in\nLibav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.5, and 0.8.x\nbefore 0.8.1 allows remote attackers to cause a denial of service (infinite\nloop and crash) and possibly execute arbitrary code via a large component\ncount in an Atrac 3 file.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2012/02/14/4","https://ubuntu.com/security/notices/USN-1479-1","https://ubuntu.com/security/notices/USN-1478-1","https://www.cve.org/CVERecord?id=CVE-2012-0853"],"bugs":["http://ffmpeg.org/trac/ffmpeg/ticket/780"],"patches":{"ffmpeg":["upstream: 9af6abdc17deb95c9b1f1d9242ba49b8b5e0b016","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=c509f4f74713b035a06f79cb4d00e708f5226bc5"],"ffmpeg-extra":[],"libav":["upstream: http://git.libav.org/?p=libav.git;a=commit;h=c509f4f74713b035a06f79cb4d00e708f5226bc5"],"libav-extra":[]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:0.5.9-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.5.9","component":null,"pocket":"security"}]},{"name":"ffmpeg-extra","source":"https://ubuntu.com/security/cve?package=ffmpeg-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg-extra","debian":"https://tracker.debian.org/pkg/ffmpeg-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libav","source":"https://ubuntu.com/security/cve?package=libav","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav","debian":"https://tracker.debian.org/pkg/libav","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"4:0.6.6-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"4:0.7.6-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.6.6,0.7.5,0.8.1","component":null,"pocket":"security"}]},{"name":"libav-extra","source":"https://ubuntu.com/security/cve?package=libav-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav-extra","debian":"https://tracker.debian.org/pkg/libav-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1478-1","USN-1479-1"],"notices":[{"id":"USN-1478-1","title":"Libav vulnerabilities","summary":"Libav could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release, which includes additional bug\nfixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:42:11.685973","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed Kega Game Video (KGV1) files. If a user were\ntricked into opening a crafted Kega Game Video (KGV1) file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program. This\nissue only affected Ubuntu 11.04 and Ubuntu 11.10. (CVE-2011-3945)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 11.04 and Ubuntu 11.10. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3952)\n\nJeong Wook Oh discovered that Libav incorrectly handled certain malformed\nASF files. If a user were tricked into opening a crafted ASF file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.10. (CVE-2011-4031)\n\nIt was discovered that Libav incorrectly handled certain malformed\nWestwood SNDx files. If a user were tricked into opening a crafted Westwood\nSNDx file, an attacker could cause a denial of service via application\ncrash, or possibly execute arbitrary code with the privileges of the user\ninvoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2012-0848)\n\nDiana Elena Muscalu discovered that Libav incorrectly handled certain\nmalformed AAC files. If a user were tricked into opening a crafted AAC\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0850)\n\nIt was discovered that Libav incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that Libav incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0852)\n\nIt was discovered that Libav incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0853)\n\nIt was discovered that Libav incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0858)\n\nIt was discovered that Libav incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0859)\n\nFabian Yamaguchi discovered that Libav incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"precise":[{"name":"libav","version":"4:0.8.3-0ubuntu0.12.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"},{"name":"libavcodec53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"}],"natty":[{"name":"libav","version":"4:0.6.6-0ubuntu0.11.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"},{"name":"libavcodec52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"}],"oneiric":[{"name":"libav","version":"4:0.7.6-0ubuntu0.11.10.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"},{"name":"libavcodec53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3945","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2011-4031","CVE-2012-0848","CVE-2012-0850","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]},{"id":"USN-1479-1","title":"FFmpeg vulnerabilities","summary":"FFmpeg could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release of Libav, which includes additional\nbug fixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:52:42.491010","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3952)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0852)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0853)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0858)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0859)\n\nFabian Yamaguchi discovered that FFmpeg incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"ffmpeg","version":"4:0.5.9-0ubuntu0.10.04.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"},{"name":"libavcodec52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]}]},{"id":"CVE-2012-0852","published":"2012-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe adpcm_decode_frame function in adpcm.c in libavcodec in FFmpeg before\n0.9.1 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before\n0.7.6, and 0.8.x before 0.8.3 allows remote attackers to cause a denial of\nservice (application crash) and possibly execute arbitrary code via an\nADPCM file with the number of channels not equal to two.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"as of 2012-05-22, no equivalent fix in libav\nas of 2012-05-22, no equivalent fix in ffmpeg 0.5.x"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2012/02/14/4","https://ubuntu.com/security/notices/USN-1479-1","https://ubuntu.com/security/notices/USN-1478-1","https://www.cve.org/CVERecord?id=CVE-2012-0852"],"bugs":["https://ffmpeg.org/trac/ffmpeg/ticket/794"],"patches":{"ffmpeg":["upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=608708009f69ba4cecebf05120c696167494c897"],"ffmpeg-extra":[],"libav":["upstream: http://git.libav.org/?p=libav.git;a=commit;h=bb5b3940b08d8dad5b7e948e8f3b02cd2eb70716"],"libav-extra":[]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:0.5.9-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"ffmpeg-extra","source":"https://ubuntu.com/security/cve?package=ffmpeg-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg-extra","debian":"https://tracker.debian.org/pkg/ffmpeg-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libav","source":"https://ubuntu.com/security/cve?package=libav","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav","debian":"https://tracker.debian.org/pkg/libav","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"4:0.6.6-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"4:0.7.6-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.8,0.6.6,0.7.6,","component":null,"pocket":"security"}]},{"name":"libav-extra","source":"https://ubuntu.com/security/cve?package=libav-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav-extra","debian":"https://tracker.debian.org/pkg/libav-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1478-1","USN-1479-1"],"notices":[{"id":"USN-1478-1","title":"Libav vulnerabilities","summary":"Libav could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release, which includes additional bug\nfixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:42:11.685973","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed Kega Game Video (KGV1) files. If a user were\ntricked into opening a crafted Kega Game Video (KGV1) file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program. This\nissue only affected Ubuntu 11.04 and Ubuntu 11.10. (CVE-2011-3945)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 11.04 and Ubuntu 11.10. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3952)\n\nJeong Wook Oh discovered that Libav incorrectly handled certain malformed\nASF files. If a user were tricked into opening a crafted ASF file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.10. (CVE-2011-4031)\n\nIt was discovered that Libav incorrectly handled certain malformed\nWestwood SNDx files. If a user were tricked into opening a crafted Westwood\nSNDx file, an attacker could cause a denial of service via application\ncrash, or possibly execute arbitrary code with the privileges of the user\ninvoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2012-0848)\n\nDiana Elena Muscalu discovered that Libav incorrectly handled certain\nmalformed AAC files. If a user were tricked into opening a crafted AAC\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0850)\n\nIt was discovered that Libav incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that Libav incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0852)\n\nIt was discovered that Libav incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0853)\n\nIt was discovered that Libav incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0858)\n\nIt was discovered that Libav incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0859)\n\nFabian Yamaguchi discovered that Libav incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"precise":[{"name":"libav","version":"4:0.8.3-0ubuntu0.12.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"},{"name":"libavcodec53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"}],"natty":[{"name":"libav","version":"4:0.6.6-0ubuntu0.11.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"},{"name":"libavcodec52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"}],"oneiric":[{"name":"libav","version":"4:0.7.6-0ubuntu0.11.10.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"},{"name":"libavcodec53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3945","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2011-4031","CVE-2012-0848","CVE-2012-0850","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]},{"id":"USN-1479-1","title":"FFmpeg vulnerabilities","summary":"FFmpeg could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release of Libav, which includes additional\nbug fixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:52:42.491010","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3952)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0852)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0853)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0858)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0859)\n\nFabian Yamaguchi discovered that FFmpeg incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"ffmpeg","version":"4:0.5.9-0ubuntu0.10.04.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"},{"name":"libavcodec52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]}]},{"id":"CVE-2012-0851","published":"2012-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in\nFFmpeg before 0.9.1 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6,\n0.7.x before 0.7.6, and 0.8.x before 0.8.3 allows remote attackers to cause\na denial of service (application crash) and possibly execute arbitrary code\nvia a crafted H.264 file, related to the chroma_format_idc value.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"in ffmpeg 0.5.x, issue is in h264.c\nas of 2012-05-22, no fix in ffmpeg 0.5.x"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2012/02/14/4","https://ubuntu.com/security/notices/USN-1479-1","https://ubuntu.com/security/notices/USN-1478-1","https://www.cve.org/CVERecord?id=CVE-2012-0851"],"bugs":[""],"patches":{"ffmpeg":["upstream: 7fff64e00d886fde11d61958888c82b461cf99b9"],"ffmpeg-extra":[],"libav":["upstream: http://git.libav.org/?p=libav.git;a=commit;h=6ef4063957aa5025c8d2cd757b6a537e4b6874df"],"libav-extra":[]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:0.5.9-0ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"ffmpeg-extra","source":"https://ubuntu.com/security/cve?package=ffmpeg-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg-extra","debian":"https://tracker.debian.org/pkg/ffmpeg-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libav","source":"https://ubuntu.com/security/cve?package=libav","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav","debian":"https://tracker.debian.org/pkg/libav","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"4:0.6.6-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"4:0.7.6-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"4:0.8.3-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.6.6,0.7.6,0.8.3","component":null,"pocket":"security"}]},{"name":"libav-extra","source":"https://ubuntu.com/security/cve?package=libav-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav-extra","debian":"https://tracker.debian.org/pkg/libav-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"4:0.6.6-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"4:0.7.6-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"4:0.8.3ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1478-1","USN-1479-1"],"notices":[{"id":"USN-1478-1","title":"Libav vulnerabilities","summary":"Libav could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release, which includes additional bug\nfixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:42:11.685973","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed Kega Game Video (KGV1) files. If a user were\ntricked into opening a crafted Kega Game Video (KGV1) file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program. This\nissue only affected Ubuntu 11.04 and Ubuntu 11.10. (CVE-2011-3945)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 11.04 and Ubuntu 11.10. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3952)\n\nJeong Wook Oh discovered that Libav incorrectly handled certain malformed\nASF files. If a user were tricked into opening a crafted ASF file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.10. (CVE-2011-4031)\n\nIt was discovered that Libav incorrectly handled certain malformed\nWestwood SNDx files. If a user were tricked into opening a crafted Westwood\nSNDx file, an attacker could cause a denial of service via application\ncrash, or possibly execute arbitrary code with the privileges of the user\ninvoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2012-0848)\n\nDiana Elena Muscalu discovered that Libav incorrectly handled certain\nmalformed AAC files. If a user were tricked into opening a crafted AAC\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0850)\n\nIt was discovered that Libav incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that Libav incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0852)\n\nIt was discovered that Libav incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0853)\n\nIt was discovered that Libav incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0858)\n\nIt was discovered that Libav incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0859)\n\nFabian Yamaguchi discovered that Libav incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"precise":[{"name":"libav","version":"4:0.8.3-0ubuntu0.12.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"},{"name":"libavcodec53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"}],"natty":[{"name":"libav","version":"4:0.6.6-0ubuntu0.11.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"},{"name":"libavcodec52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"}],"oneiric":[{"name":"libav","version":"4:0.7.6-0ubuntu0.11.10.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"},{"name":"libavcodec53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3945","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2011-4031","CVE-2012-0848","CVE-2012-0850","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]},{"id":"USN-1479-1","title":"FFmpeg vulnerabilities","summary":"FFmpeg could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release of Libav, which includes additional\nbug fixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:52:42.491010","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that FFmpeg incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. (CVE-2011-3952)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0852)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0853)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0858)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0859)\n\nFabian Yamaguchi discovered that FFmpeg incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"ffmpeg","version":"4:0.5.9-0ubuntu0.10.04.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"},{"name":"libavcodec52","version":"4:0.5.9-0ubuntu0.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.9-0ubuntu0.10.04.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]}]},{"id":"CVE-2012-0850","published":"2012-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe sbr_qmf_synthesis function in libavcodec/aacsbr.c in FFmpeg before\n0.9.1 allows remote attackers to cause a denial of service (application\ncrash) via a crafted mpg file that triggers memory corruption involving the\nv_off variable, probably a buffer underflow.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"as of 2012-05-22, no fix in libav 0.6.x and 0.7.x\ncode not present in ffmpeg 0.5.x"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2012/02/14/4","https://ubuntu.com/security/notices/USN-1478-1","https://www.cve.org/CVERecord?id=CVE-2012-0850"],"bugs":["http://ffmpeg.org/trac/ffmpeg/ticket/760"],"patches":{"ffmpeg":["upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=944f5b2779e4aa63f7624df6cd4de832a53db81b"],"ffmpeg-extra":[],"libav":["upstream: http://git.libav.org/?p=libav.git;a=commit;h=17ce52912f59a74ecc265e062578fb1181456e18"],"libav-extra":[]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"ffmpeg-extra","source":"https://ubuntu.com/security/cve?package=ffmpeg-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg-extra","debian":"https://tracker.debian.org/pkg/ffmpeg-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libav","source":"https://ubuntu.com/security/cve?package=libav","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav","debian":"https://tracker.debian.org/pkg/libav","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"4:0.6.6-0ubuntu0.11.04.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"4:0.7.6-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.8.0,0.7.6,0.6.6","component":null,"pocket":"security"}]},{"name":"libav-extra","source":"https://ubuntu.com/security/cve?package=libav-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav-extra","debian":"https://tracker.debian.org/pkg/libav-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1478-1"],"notices":[{"id":"USN-1478-1","title":"Libav vulnerabilities","summary":"Libav could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release, which includes additional bug\nfixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:42:11.685973","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed Kega Game Video (KGV1) files. If a user were\ntricked into opening a crafted Kega Game Video (KGV1) file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program. This\nissue only affected Ubuntu 11.04 and Ubuntu 11.10. (CVE-2011-3945)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 11.04 and Ubuntu 11.10. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3952)\n\nJeong Wook Oh discovered that Libav incorrectly handled certain malformed\nASF files. If a user were tricked into opening a crafted ASF file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.10. (CVE-2011-4031)\n\nIt was discovered that Libav incorrectly handled certain malformed\nWestwood SNDx files. If a user were tricked into opening a crafted Westwood\nSNDx file, an attacker could cause a denial of service via application\ncrash, or possibly execute arbitrary code with the privileges of the user\ninvoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2012-0848)\n\nDiana Elena Muscalu discovered that Libav incorrectly handled certain\nmalformed AAC files. If a user were tricked into opening a crafted AAC\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0850)\n\nIt was discovered that Libav incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that Libav incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0852)\n\nIt was discovered that Libav incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0853)\n\nIt was discovered that Libav incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0858)\n\nIt was discovered that Libav incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0859)\n\nFabian Yamaguchi discovered that Libav incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"precise":[{"name":"libav","version":"4:0.8.3-0ubuntu0.12.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"},{"name":"libavcodec53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"}],"natty":[{"name":"libav","version":"4:0.6.6-0ubuntu0.11.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"},{"name":"libavcodec52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"}],"oneiric":[{"name":"libav","version":"4:0.7.6-0ubuntu0.11.10.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"},{"name":"libavcodec53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3945","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2011-4031","CVE-2012-0848","CVE-2012-0850","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]}]},{"id":"CVE-2012-0848","published":"2012-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in the ws_snd_decode_frame function in\nlibavcodec/ws-snd1.c in FFmpeg 0.9.1 allows remote attackers to cause a\ndenial of service (application crash) via a crafted media file, related to\nan incorrect calculation, aka \"wrong samples count.\"","ubuntu_description":"","notes":[{"author":"jdstrand","note":"per upstream, \"Simple case of amount written and check mismatching\""},{"author":"mdeslaur","note":"code is different in ffmpeg 0.5.x and libav 0.6.x, probably not\nvulnerable"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2012/02/14/4","https://ubuntu.com/security/notices/USN-1478-1","https://www.cve.org/CVERecord?id=CVE-2012-0848"],"bugs":[""],"patches":{"ffmpeg":["upstream: 5257743aee0c3982f0079e6553aabc6aa39401d2","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=9fb7a5af97d8c084c3af2566070d09eae0ab49fc"],"ffmpeg-extra":[],"libav":["upstream: http://git.libav.org/?p=libav.git;a=commit;h=9fb7a5af97d8c084c3af2566070d09eae0ab49fc"],"libav-extra":[]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"ffmpeg-extra","source":"https://ubuntu.com/security/cve?package=ffmpeg-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg-extra","debian":"https://tracker.debian.org/pkg/ffmpeg-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libav","source":"https://ubuntu.com/security/cve?package=libav","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav","debian":"https://tracker.debian.org/pkg/libav","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"4:0.7.6-0ubuntu0.11.10.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.7.5,0.8.1","component":null,"pocket":"security"}]},{"name":"libav-extra","source":"https://ubuntu.com/security/cve?package=libav-extra","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav-extra","debian":"https://tracker.debian.org/pkg/libav-extra","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:0.8.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1478-1"],"notices":[{"id":"USN-1478-1","title":"Libav vulnerabilities","summary":"Libav could be made to crash or run programs as your login if it\nopened a specially crafted file.\n","instructions":"This update uses a new upstream release, which includes additional bug\nfixes. In general, a standard system update will make all the necessary\nchanges.\n","references":[],"published":"2012-06-18T12:42:11.685973","description":"Mateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DV files. If a user were tricked into opening a\ncrafted DV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2011-3929, CVE-2011-3936)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed NSV files. If a user were tricked into opening a\ncrafted NSV file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3940)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed Kega Game Video (KGV1) files. If a user were\ntricked into opening a crafted Kega Game Video (KGV1) file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program. This\nissue only affected Ubuntu 11.04 and Ubuntu 11.10. (CVE-2011-3945)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed MJPEG-B files. If a user were tricked into\nopening a crafted MJPEG-B file, an attacker could cause a denial of service\nvia application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 11.04 and Ubuntu 11.10. (CVE-2011-3947)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed DPCM files. If a user were tricked into opening a\ncrafted DPCM file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3951)\n\nMateusz Jurczyk and Gynvael Coldwind discovered that Libav incorrectly\nhandled certain malformed KMVC files. If a user were tricked into opening a\ncrafted KMVC file, an attacker could cause a denial of service via\napplication crash, or possibly execute arbitrary code with the privileges\nof the user invoking the program. This issue only affected Ubuntu 11.04 and\nUbuntu 11.10. (CVE-2011-3952)\n\nJeong Wook Oh discovered that Libav incorrectly handled certain malformed\nASF files. If a user were tricked into opening a crafted ASF file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.10. (CVE-2011-4031)\n\nIt was discovered that Libav incorrectly handled certain malformed\nWestwood SNDx files. If a user were tricked into opening a crafted Westwood\nSNDx file, an attacker could cause a denial of service via application\ncrash, or possibly execute arbitrary code with the privileges of the user\ninvoking the program. This issue only affected Ubuntu 11.10.\n(CVE-2012-0848)\n\nDiana Elena Muscalu discovered that Libav incorrectly handled certain\nmalformed AAC files. If a user were tricked into opening a crafted AAC\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0850)\n\nIt was discovered that Libav incorrectly handled certain malformed H.264\nfiles. If a user were tricked into opening a crafted H.264 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2012-0851)\n\nIt was discovered that Libav incorrectly handled certain malformed ADPCM\nfiles. If a user were tricked into opening a crafted ADPCM file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0852)\n\nIt was discovered that Libav incorrectly handled certain malformed Atrac 3\nfiles. If a user were tricked into opening a crafted Atrac 3 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0853)\n\nIt was discovered that Libav incorrectly handled certain malformed Shorten\nfiles. If a user were tricked into opening a crafted Shorten file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0858)\n\nIt was discovered that Libav incorrectly handled certain malformed Vorbis\nfiles. If a user were tricked into opening a crafted Vorbis file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 11.04 and Ubuntu 11.10.\n(CVE-2012-0859)\n\nFabian Yamaguchi discovered that Libav incorrectly handled certain\nmalformed VQA files. If a user were tricked into opening a crafted VQA\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. (CVE-2012-0947)\n","is_hidden":false,"release_packages":{"precise":[{"name":"libav","version":"4:0.8.3-0ubuntu0.12.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"},{"name":"libavcodec53","version":"4:0.8.3-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.8.3-0ubuntu0.12.04.1"}],"natty":[{"name":"libav","version":"4:0.6.6-0ubuntu0.11.04.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"},{"name":"libavcodec52","version":"4:0.6.6-0ubuntu0.11.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.6.6-0ubuntu0.11.04.1"}],"oneiric":[{"name":"libav","version":"4:0.7.6-0ubuntu0.11.10.1","description":"Multimedia player, server, encoder and transcoder","is_source":true},{"name":"libavformat53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"},{"name":"libavcodec53","version":"4:0.7.6-0ubuntu0.11.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libav","version_link":"https://launchpad.net/ubuntu/+source/libav/4:0.7.6-0ubuntu0.11.10.1"}]},"type":"USN","cves_ids":["CVE-2011-3929","CVE-2011-3936","CVE-2011-3940","CVE-2011-3945","CVE-2011-3947","CVE-2011-3951","CVE-2011-3952","CVE-2011-4031","CVE-2012-0848","CVE-2012-0850","CVE-2012-0851","CVE-2012-0852","CVE-2012-0853","CVE-2012-0858","CVE-2012-0859","CVE-2012-0947"]}]},{"id":"CVE-2012-0845","published":"2012-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nSimpleXMLRPCServer.py in SimpleXMLRPCServer in Python before 2.6.8, 2.7.x\nbefore 2.7.3, 3.x before 3.1.5, and 3.2.x before 3.2.3 allows remote\nattackers to cause a denial of service (infinite loop and CPU consumption)\nvia an XML-RPC POST request that contains a smaller amount of data than\nspecified by the Content-Length header.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"reproducer doesn't work on 8.04 LTS python2.4, but the code is\nsufficiently similar that we'll patch"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://bugzilla.redhat.com/show_bug.cgi?id=789790","https://ubuntu.com/security/notices/USN-1592-1","https://ubuntu.com/security/notices/USN-1596-1","https://ubuntu.com/security/notices/USN-1613-1","https://ubuntu.com/security/notices/USN-1613-2","https://ubuntu.com/security/notices/USN-1615-1","https://ubuntu.com/security/notices/USN-1616-1","https://www.cve.org/CVERecord?id=CVE-2012-0845"],"bugs":["http://bugs.python.org/issue14001"],"patches":{"python2.4":[],"python2.5":[],"python2.6":["upstream: http://hg.python.org/cpython/rev/24244a744d01/"],"python2.7":["upstream: http://hg.python.org/cpython/rev/0c02f30b2538/"],"python3.1":["upstream: http://hg.python.org/cpython/rev/4dd5a94fd3e3/"],"python3.2":["upstream: http://hg.python.org/cpython/rev/cd67740ce653/"]},"tags":{},"packages":[{"name":"python2.4","source":"https://ubuntu.com/security/cve?package=python2.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python2.4","debian":"https://tracker.debian.org/pkg/python2.4","statuses":[{"release_codename":"hardy","status":"released","description":"2.4.5-1ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"python2.5","source":"https://ubuntu.com/security/cve?package=python2.5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python2.5","debian":"https://tracker.debian.org/pkg/python2.5","statuses":[{"release_codename":"hardy","status":"released","description":"2.5.2-2ubuntu6.2","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"python2.6","source":"https://ubuntu.com/security/cve?package=python2.6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python2.6","debian":"https://tracker.debian.org/pkg/python2.6","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.6.5-1ubuntu6.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"2.6.6-6ubuntu7.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"2.6.7-4ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.8","component":null,"pocket":"security"}]},{"name":"python2.7","source":"https://ubuntu.com/security/cve?package=python2.7","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python2.7","debian":"https://tracker.debian.org/pkg/python2.7","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"2.7.1-5ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"2.7.2-5ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"2.7.3-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.7.3","component":null,"pocket":"security"}]},{"name":"python3.1","source":"https://ubuntu.com/security/cve?package=python3.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python3.1","debian":"https://tracker.debian.org/pkg/python3.1","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"3.1.2-0ubuntu3.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"3.1.3-1ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"python3.2","source":"https://ubuntu.com/security/cve?package=python3.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python3.2","debian":"https://tracker.debian.org/pkg/python3.2","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"3.2-1ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"3.2.2-0ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"3.2.3-0ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.2.3","component":null,"pocket":"security"}]}],"notices_ids":["USN-1613-1","USN-1592-1","USN-1613-2","USN-1616-1","USN-1615-1","USN-1596-1"],"notices":[{"id":"USN-1613-1","title":"Python 2.5 vulnerabilities","summary":"Several security issues were fixed in Python 2.5.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-10-17T13:09:19.200949","description":"It was discovered that Python would prepend an empty string to sys.path\nunder certain circumstances. A local attacker with write access to the\ncurrent working directory could exploit this to execute arbitrary code.\n(CVE-2008-5983)\n\nIt was discovered that the audioop module did not correctly perform input\nvalidation. If a user or automatated system were tricked into opening a\ncrafted audio file, an attacker could cause a denial of service via\napplication crash. (CVE-2010-1634, CVE-2010-2089)\n\nGiampaolo Rodola discovered several race conditions in the smtpd module.\nA remote attacker could exploit this to cause a denial of service via\ndaemon outage. (CVE-2010-3493)\n\nIt was discovered that the CGIHTTPServer module did not properly perform\ninput validation on certain HTTP GET requests. A remote attacker could\npotentially obtain access to CGI script source files. (CVE-2011-1015)\n\nNiels Heinen discovered that the urllib and urllib2 modules would process\nLocation headers that specify a redirection to file: URLs. A remote\nattacker could exploit this to obtain sensitive information or cause a\ndenial of service. (CVE-2011-1521)\n\nIt was discovered that SimpleHTTPServer did not use a charset parameter in\nthe Content-Type HTTP header. An attacker could potentially exploit this\nto conduct cross-site scripting (XSS) attacks against Internet Explorer 7\nusers. (CVE-2011-4940)\n\nIt was discovered that Python distutils contained a race condition when\ncreating the ~/.pypirc file. A local attacker could exploit this to obtain\nsensitive information. (CVE-2011-4944)\n\nIt was discovered that SimpleXMLRPCServer did not properly validate its\ninput when handling HTTP POST requests. A remote attacker could exploit\nthis to cause a denial of service via excessive CPU utilization.\n(CVE-2012-0845)\n\nIt was discovered that the Expat module in Python 2.5 computed hash values\nwithout restricting the ability to trigger hash collisions predictably. If\na user or application using pyexpat were tricked into opening a crafted XML\nfile, an attacker could cause a denial of service by consuming excessive\nCPU resources. (CVE-2012-0876)\n\nTim Boddy discovered that the Expat module in Python 2.5 did not properly\nhandle memory reallocation when processing XML files. If a user or\napplication using pyexpat were tricked into opening a crafted XML file, an\nattacker could cause a denial of service by consuming excessive memory\nresources. (CVE-2012-1148)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"python2.5","version":"2.5.2-2ubuntu6.2","description":"An interactive high-level object-oriented language (version 2.5)","is_source":true},{"name":"python2.5-minimal","version":"2.5.2-2ubuntu6.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.5","version_link":"https://launchpad.net/ubuntu/+source/python2.5/2.5.2-2ubuntu6.2"},{"name":"python2.5","version":"2.5.2-2ubuntu6.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.5","version_link":"https://launchpad.net/ubuntu/+source/python2.5/2.5.2-2ubuntu6.2"}]},"type":"USN","cves_ids":["CVE-2008-5983","CVE-2010-1634","CVE-2010-2089","CVE-2010-3493","CVE-2011-1015","CVE-2011-1521","CVE-2011-4940","CVE-2011-4944","CVE-2012-0845","CVE-2012-0876","CVE-2012-1148"]},{"id":"USN-1592-1","title":"Python 2.7 vulnerabilities","summary":"Several security issues were fixed in Python 2.7.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-10-02T19:53:09.408372","description":"Niels Heinen discovered that the urllib and urllib2 modules would process\nLocation headers that specify a redirection to file: URLs. A remote\nattacker could exploit this to obtain sensitive information or cause a\ndenial of service. This issue only affected Ubuntu 11.04. (CVE-2011-1521)\n\nIt was discovered that SimpleHTTPServer did not use a charset parameter in\nthe Content-Type HTTP header. An attacker could potentially exploit this\nto conduct cross-site scripting (XSS) attacks against Internet Explorer 7\nusers. This issue only affected Ubuntu 11.04. (CVE-2011-4940)\n\nIt was discovered that Python distutils contained a race condition when\ncreating the ~/.pypirc file. A local attacker could exploit this to obtain\nsensitive information. (CVE-2011-4944)\n\nIt was discovered that SimpleXMLRPCServer did not properly validate its\ninput when handling HTTP POST requests. A remote attacker could exploit\nthis to cause a denial of service via excessive CPU utilization.\n(CVE-2012-0845)\n\nIt was discovered that Python was susceptible to hash algorithm attacks.\nAn attacker could cause a denial of service under certian circumstances.\nThis update adds the '-R' command line option and honors setting the\nPYTHONHASHSEED environment variable to 'random' to salt str and datetime\nobjects with an unpredictable value. (CVE-2012-1150)\n","is_hidden":false,"release_packages":{"natty":[{"name":"python2.7","version":"2.7.1-5ubuntu2.2","description":"An interactive high-level object-oriented language (version 2.7)","is_source":true},{"name":"python2.7-minimal","version":"2.7.1-5ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.7","version_link":"https://launchpad.net/ubuntu/+source/python2.7/2.7.1-5ubuntu2.2"},{"name":"python2.7","version":"2.7.1-5ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.7","version_link":"https://launchpad.net/ubuntu/+source/python2.7/2.7.1-5ubuntu2.2"}],"oneiric":[{"name":"python2.7","version":"2.7.2-5ubuntu1.1","description":"An interactive high-level object-oriented language (version 2.7)","is_source":true},{"name":"python2.7-minimal","version":"2.7.2-5ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.7","version_link":"https://launchpad.net/ubuntu/+source/python2.7/2.7.2-5ubuntu1.1"},{"name":"python2.7","version":"2.7.2-5ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.7","version_link":"https://launchpad.net/ubuntu/+source/python2.7/2.7.2-5ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2011-1521","CVE-2011-4940","CVE-2011-4944","CVE-2012-0845","CVE-2012-1150"]},{"id":"USN-1613-2","title":"Python 2.4 vulnerabilities","summary":"Several security issues were fixed in Python 2.4.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-10-17T20:04:18.574469","description":"USN-1613-1 fixed vulnerabilities in Python 2.5. This update provides the\ncorresponding updates for Python 2.4.\n\nOriginal advisory details:\n\n It was discovered that Python would prepend an empty string to sys.path\n under certain circumstances. A local attacker with write access to the\n current working directory could exploit this to execute arbitrary code.\n (CVE-2008-5983)\n \n It was discovered that the audioop module did not correctly perform input\n validation. If a user or automatated system were tricked into opening a\n crafted audio file, an attacker could cause a denial of service via\n application crash. (CVE-2010-1634, CVE-2010-2089)\n \n Giampaolo Rodola discovered several race conditions in the smtpd module.\n A remote attacker could exploit this to cause a denial of service via\n daemon outage. (CVE-2010-3493)\n \n It was discovered that the CGIHTTPServer module did not properly perform\n input validation on certain HTTP GET requests. A remote attacker could\n potentially obtain access to CGI script source files. (CVE-2011-1015)\n \n Niels Heinen discovered that the urllib and urllib2 modules would process\n Location headers that specify a redirection to file: URLs. A remote\n attacker could exploit this to obtain sensitive information or cause a\n denial of service. (CVE-2011-1521)\n \n It was discovered that SimpleHTTPServer did not use a charset parameter in\n the Content-Type HTTP header. An attacker could potentially exploit this\n to conduct cross-site scripting (XSS) attacks against Internet Explorer 7\n users. (CVE-2011-4940)\n \n It was discovered that Python distutils contained a race condition when\n creating the ~/.pypirc file. A local attacker could exploit this to obtain\n sensitive information. (CVE-2011-4944)\n \n It was discovered that SimpleXMLRPCServer did not properly validate its\n input when handling HTTP POST requests. A remote attacker could exploit\n this to cause a denial of service via excessive CPU utilization.\n (CVE-2012-0845)\n \n It was discovered that the Expat module in Python 2.5 computed hash values\n without restricting the ability to trigger hash collisions predictably. If\n a user or application using pyexpat were tricked into opening a crafted XML\n file, an attacker could cause a denial of service by consuming excessive\n CPU resources. (CVE-2012-0876)\n \n Tim Boddy discovered that the Expat module in Python 2.5 did not properly\n handle memory reallocation when processing XML files. If a user or\n application using pyexpat were tricked into opening a crafted XML file, an\n attacker could cause a denial of service by consuming excessive memory\n resources. (CVE-2012-1148)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"python2.4","version":"2.4.5-1ubuntu4.4","description":"An interactive high-level object-oriented language (version 2.4)","is_source":true},{"name":"python2.4-minimal","version":"2.4.5-1ubuntu4.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.4","version_link":"https://launchpad.net/ubuntu/+source/python2.4/2.4.5-1ubuntu4.4"},{"name":"python2.4","version":"2.4.5-1ubuntu4.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.4","version_link":"https://launchpad.net/ubuntu/+source/python2.4/2.4.5-1ubuntu4.4"}]},"type":"USN","cves_ids":["CVE-2010-2089","CVE-2011-1015","CVE-2008-5983","CVE-2010-1634","CVE-2010-3493","CVE-2011-1521","CVE-2011-4940","CVE-2011-4944","CVE-2012-0845","CVE-2012-0876","CVE-2012-1148"]},{"id":"USN-1616-1","title":"Python 3.1 vulnerabilities","summary":"Several security issues were fixed in Python 3.1.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-10-24T15:51:47.087706","description":"It was discovered that Python would prepend an empty string to sys.path\nunder certain circumstances. A local attacker with write access to the\ncurrent working directory could exploit this to execute arbitrary code.\nThis issue only affected Ubuntu 10.04 LTS. (CVE-2008-5983)\n\nIt was discovered that the audioop module did not correctly perform input\nvalidation. If a user or automatated system were tricked into opening a\ncrafted audio file, an attacker could cause a denial of service via\napplication crash. These issues only affected Ubuntu 10.04 LTS.\n(CVE-2010-1634, CVE-2010-2089)\n\nIt was discovered that Python distutils contained a race condition when\ncreating the ~/.pypirc file. A local attacker could exploit this to obtain\nsensitive information. (CVE-2011-4944)\n\nIt was discovered that SimpleXMLRPCServer did not properly validate its\ninput when handling HTTP POST requests. A remote attacker could exploit\nthis to cause a denial of service via excessive CPU utilization.\n(CVE-2012-0845)\n\nIt was discovered that Python was susceptible to hash algorithm attacks.\nAn attacker could cause a denial of service under certian circumstances.\nThis update adds the '-R' command line option and honors setting the\nPYTHONHASHSEED environment variable to 'random' to salt str and datetime\nobjects with an unpredictable value. (CVE-2012-1150)\n\nSerhiy Storchaka discovered that the UTF16 decoder in Python did not\nproperly reset internal variables after error handling. An attacker could\nexploit this to cause a denial of service via memory corruption.\n(CVE-2012-2135)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"python3.1","version":"3.1.2-0ubuntu3.2","description":"An interactive high-level object-oriented language (version 3.1)","is_source":true},{"name":"python3.1-minimal","version":"3.1.2-0ubuntu3.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.1","version_link":"https://launchpad.net/ubuntu/+source/python3.1/3.1.2-0ubuntu3.2"},{"name":"python3.1","version":"3.1.2-0ubuntu3.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.1","version_link":"https://launchpad.net/ubuntu/+source/python3.1/3.1.2-0ubuntu3.2"}],"natty":[{"name":"python3.1","version":"3.1.3-1ubuntu1.2","description":"An interactive high-level object-oriented language (version 3.1)","is_source":true},{"name":"python3.1-minimal","version":"3.1.3-1ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.1","version_link":"https://launchpad.net/ubuntu/+source/python3.1/3.1.3-1ubuntu1.2"},{"name":"python3.1","version":"3.1.3-1ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.1","version_link":"https://launchpad.net/ubuntu/+source/python3.1/3.1.3-1ubuntu1.2"}]},"type":"USN","cves_ids":["CVE-2008-5983","CVE-2010-1634","CVE-2010-2089","CVE-2011-4944","CVE-2012-0845","CVE-2012-1150","CVE-2012-2135"]},{"id":"USN-1615-1","title":"Python 3.2 vulnerabilities","summary":"Several security issues were fixed in Python 3.2.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-10-23T19:25:24.558788","description":"It was discovered that Python distutils contained a race condition when\ncreating the ~/.pypirc file. A local attacker could exploit this to obtain\nsensitive information. (CVE-2011-4944)\n\nIt was discovered that SimpleXMLRPCServer did not properly validate its\ninput when handling HTTP POST requests. A remote attacker could exploit\nthis to cause a denial of service via excessive CPU utilization. This issue\nonly affected Ubuntu 11.04 and 11.10. (CVE-2012-0845)\n\nIt was discovered that Python was susceptible to hash algorithm attacks.\nAn attacker could cause a denial of service under certian circumstances.\nThis update adds the '-R' command line option and honors setting the\nPYTHONHASHSEED environment variable to 'random' to salt str and datetime\nobjects with an unpredictable value. This issue only affected Ubuntu 11.04\nand 11.10. (CVE-2012-1150)\n\nSerhiy Storchaka discovered that the UTF16 decoder in Python did not\nproperly reset internal variables after error handling. An attacker could\nexploit this to cause a denial of service via memory corruption. This issue\ndid not affect Ubuntu 12.10. (CVE-2012-2135)\n","is_hidden":false,"release_packages":{"precise":[{"name":"python3.2","version":"3.2.3-0ubuntu3.2","description":"Interactive high-level object-oriented language (version 3.2)","is_source":true},{"name":"python3.2-minimal","version":"3.2.3-0ubuntu3.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.2","version_link":"https://launchpad.net/ubuntu/+source/python3.2/3.2.3-0ubuntu3.2"},{"name":"python3.2","version":"3.2.3-0ubuntu3.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.2","version_link":"https://launchpad.net/ubuntu/+source/python3.2/3.2.3-0ubuntu3.2"}],"natty":[{"name":"python3.2","version":"3.2-1ubuntu1.2","description":"An interactive high-level object-oriented language (version 3.2)","is_source":true},{"name":"python3.2-minimal","version":"3.2-1ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.2","version_link":"https://launchpad.net/ubuntu/+source/python3.2/3.2-1ubuntu1.2"},{"name":"python3.2","version":"3.2-1ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.2","version_link":"https://launchpad.net/ubuntu/+source/python3.2/3.2-1ubuntu1.2"}],"oneiric":[{"name":"python3.2","version":"3.2.2-0ubuntu1.1","description":"Interactive high-level object-oriented language (version 3.2)","is_source":true},{"name":"python3.2-minimal","version":"3.2.2-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.2","version_link":"https://launchpad.net/ubuntu/+source/python3.2/3.2.2-0ubuntu1.1"},{"name":"python3.2","version":"3.2.2-0ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.2","version_link":"https://launchpad.net/ubuntu/+source/python3.2/3.2.2-0ubuntu1.1"}],"quantal":[{"name":"python3.2","version":"3.2.3-6ubuntu3.1","description":"Interactive high-level object-oriented language (version 3.2)","is_source":true},{"name":"python3.2-minimal","version":"3.2.3-6ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.2","version_link":"https://launchpad.net/ubuntu/+source/python3.2/3.2.3-6ubuntu3.1"},{"name":"python3.2","version":"3.2.3-6ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python3.2","version_link":"https://launchpad.net/ubuntu/+source/python3.2/3.2.3-6ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2011-4944","CVE-2012-0845","CVE-2012-1150","CVE-2012-2135"]},{"id":"USN-1596-1","title":"Python 2.6 vulnerabilities","summary":"Several security issues were fixed in Python 2.6.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2012-10-04T21:40:32.857994","description":"It was discovered that Python would prepend an empty string to sys.path\nunder certain circumstances. A local attacker with write access to the\ncurrent working directory could exploit this to execute arbitrary code.\n(CVE-2008-5983)\n\nIt was discovered that the audioop module did not correctly perform input\nvalidation. If a user or automatated system were tricked into opening a\ncrafted audio file, an attacker could cause a denial of service via\napplication crash. (CVE-2010-1634, CVE-2010-2089)\n\nGiampaolo Rodola discovered several race conditions in the smtpd module.\nA remote attacker could exploit this to cause a denial of service via\ndaemon outage. (CVE-2010-3493)\n\nIt was discovered that the CGIHTTPServer module did not properly perform\ninput validation on certain HTTP GET requests. A remote attacker could\npotentially obtain access to CGI script source files. (CVE-2011-1015)\n\nNiels Heinen discovered that the urllib and urllib2 modules would process\nLocation headers that specify a redirection to file: URLs. A remote\nattacker could exploit this to obtain sensitive information or cause a\ndenial of service. This issue only affected Ubuntu 11.04. (CVE-2011-1521)\n\nIt was discovered that SimpleHTTPServer did not use a charset parameter in\nthe Content-Type HTTP header. An attacker could potentially exploit this\nto conduct cross-site scripting (XSS) attacks against Internet Explorer 7\nusers. This issue only affected Ubuntu 11.04. (CVE-2011-4940)\n\nIt was discovered that Python distutils contained a race condition when\ncreating the ~/.pypirc file. A local attacker could exploit this to obtain\nsensitive information. (CVE-2011-4944)\n\nIt was discovered that SimpleXMLRPCServer did not properly validate its\ninput when handling HTTP POST requests. A remote attacker could exploit\nthis to cause a denial of service via excessive CPU utilization.\n(CVE-2012-0845)\n\nIt was discovered that Python was susceptible to hash algorithm attacks.\nAn attacker could cause a denial of service under certian circumstances.\nThis update adds the '-R' command line option and honors setting the\nPYTHONHASHSEED environment variable to 'random' to salt str and datetime\nobjects with an unpredictable value. (CVE-2012-1150)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"python2.6","version":"2.6.5-1ubuntu6.1","description":"An interactive high-level object-oriented language","is_source":true},{"name":"python2.6-minimal","version":"2.6.5-1ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.6","version_link":"https://launchpad.net/ubuntu/+source/python2.6/2.6.5-1ubuntu6.1"},{"name":"python2.6","version":"2.6.5-1ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.6","version_link":"https://launchpad.net/ubuntu/+source/python2.6/2.6.5-1ubuntu6.1"}],"natty":[{"name":"python2.6","version":"2.6.6-6ubuntu7.1","description":"An interactive high-level object-oriented language","is_source":true},{"name":"python2.6-minimal","version":"2.6.6-6ubuntu7.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.6","version_link":"https://launchpad.net/ubuntu/+source/python2.6/2.6.6-6ubuntu7.1"},{"name":"python2.6","version":"2.6.6-6ubuntu7.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.6","version_link":"https://launchpad.net/ubuntu/+source/python2.6/2.6.6-6ubuntu7.1"}],"oneiric":[{"name":"python2.6","version":"2.6.7-4ubuntu1.1","description":"An interactive high-level object-oriented language","is_source":true},{"name":"python2.6-minimal","version":"2.6.7-4ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.6","version_link":"https://launchpad.net/ubuntu/+source/python2.6/2.6.7-4ubuntu1.1"},{"name":"python2.6","version":"2.6.7-4ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python2.6","version_link":"https://launchpad.net/ubuntu/+source/python2.6/2.6.7-4ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2008-5983","CVE-2010-1634","CVE-2010-2089","CVE-2010-3493","CVE-2011-1015","CVE-2011-1521","CVE-2011-4940","CVE-2011-4944","CVE-2012-0845","CVE-2012-1150"]}]}],"offset":70060,"limit":20,"total_results":79316}