{"cves":[{"id":"CVE-2010-4471","published":"2011-02-17T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) in Oracle\nJava SE and Java for Business 6 Update 23 and earlier, and 5.0 Update 27\nand earlier allows remote untrusted Java Web Start applications and\nuntrusted Java applets to affect confidentiality via unknown vectors\nrelated to 2D. NOTE: the previous information was obtained from the\nFebruary 2011 CPU. Oracle has not commented on claims from a downstream\nvendor that this issue is related to the exposure of system properties via\nvectors related to Font.createFont and exception text.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"may not affect openjdk"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.html","https://ubuntu.com/security/notices/USN-1079-1","https://ubuntu.com/security/notices/USN-1079-2","https://ubuntu.com/security/notices/USN-1079-3","https://www.cve.org/CVERecord?id=CVE-2010-4471"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b27-1.12.3-0ubuntu1~08.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b20-1.9.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.7-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.7-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b18-1.8.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.7-0ubuntu1~10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.7-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-28","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.24-1build0.8.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.24-1build0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.24-1build0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6.26-1oneiric1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.24-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1079-1","USN-1079-2","USN-1079-3"],"notices":[{"id":"USN-1079-1","title":"OpenJDK 6 vulnerabilities","summary":"","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes. \n","references":[],"published":"2011-03-01T07:58:19.268819","description":"It was discovered that untrusted Java applets could create domain\nname resolution cache entries, allowing an attacker to manipulate\nname resolution within the JVM. (CVE-2010-4448)\n\nIt was discovered that the Java launcher did not did not properly\nsetup the LD_LIBRARY_PATH environment variable. A local attacker\ncould exploit this to execute arbitrary code as the user invoking\nthe program. (CVE-2010-4450)\n\nIt was discovered that within the Swing library, forged timer events\ncould allow bypass of SecurityManager checks. This could allow an\nattacker to access restricted resources. (CVE-2010-4465)\n\nIt was discovered that certain bytecode combinations confused memory\nmanagement within the HotSpot JVM. This could allow an attacker to\ncause a denial of service through an application crash or possibly\ninject code. (CVE-2010-4469)\n\nIt was discovered that the way JAXP components were handled\nallowed them to be manipulated by untrusted applets. An attacker\ncould use this to bypass XML processing restrictions and elevate\nprivileges. (CVE-2010-4470)\n\nIt was discovered that the Java2D subcomponent, when processing broken\nCFF fonts could leak system properties. (CVE-2010-4471)\n\nIt was discovered that a flaw in the XML Digital Signature\ncomponent could allow an attacker to cause untrusted code to\nreplace the XML Digital Signature Transform or C14N algorithm\nimplementations. (CVE-2010-4472)\n\nKonstantin Preisser and others discovered that specific double literals\nwere improperly handled, allowing a remote attacker to cause a denial\nof service. (CVE-2010-4476)\n\nIt was discovered that the JNLPClassLoader class when handling multiple\nsignatures allowed remote attackers to gain privileges due to the\nassignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~10.04.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"}],"karmic":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~9.10.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]},{"id":"USN-1079-2","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 Vulnerabilities (armel packages only)\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-15T00:49:56.326202","description":"USN-1079-1 fixed vulnerabilities in OpenJDK 6 for non-armel (ARM)\narchitectures. This update provides the corresponding updates for\nOpenJDK 6 for use with the armel (ARM) architectures.\n\nIn order to build the armel (ARM) OpenJDK 6 update for Ubuntu 10.04\nLTS, it was necessary to rebuild binutils and gcj-4.4 from Ubuntu\n10.04 LTS updates.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n\n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n\n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n\n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n\n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n\n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n\n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n\n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n\n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~10.04.2","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"}],"karmic":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~9.10.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2011-0706","CVE-2010-4470","CVE-2010-4471","CVE-2010-4476","CVE-2010-4472","CVE-2010-4465","CVE-2010-4469"]},{"id":"USN-1079-3","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 vulnerabilities in Ubuntu 10.10 for armel (ARM) architecture.\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-17T18:11:46.065113","description":"USN-1079-2 fixed vulnerabilities in OpenJDK 6 for armel (ARM)\narchitectures in Ubuntu 9.10 and Ubuntu 10.04 LTS. This update fixes\nvulnerabilities in OpenJDK 6 for armel (ARM) architectures for Ubuntu\n10.10.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n \n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n \n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n \n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n \n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n \n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n \n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n \n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n \n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu2.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]}]},{"id":"CVE-2010-4470","published":"2011-02-17T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) in Oracle\nJava SE and Java for Business 6 Update 23, and, and earlier allows remote\nattackers to affect availability via unknown vectors related to JAXP and\nunspecified APIs. NOTE: the previous information was obtained from the\nFebruary 2011 CPU. Oracle has not commented on claims from a downstream\nvendor that this issue is related to \"Features set on SchemaFactory not\ninherited by Validator.\"","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.html","https://ubuntu.com/security/notices/USN-1079-1","https://ubuntu.com/security/notices/USN-1079-2","https://ubuntu.com/security/notices/USN-1079-3","https://www.cve.org/CVERecord?id=CVE-2010-4470"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b27-1.12.3-0ubuntu1~08.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b20-1.9.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.7-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.7-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b18-1.8.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.7-0ubuntu1~10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.7-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.24-1build0.8.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.24-1build0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.24-1build0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6.26-1oneiric1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.24-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1079-1","USN-1079-2","USN-1079-3"],"notices":[{"id":"USN-1079-1","title":"OpenJDK 6 vulnerabilities","summary":"","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes. \n","references":[],"published":"2011-03-01T07:58:19.268819","description":"It was discovered that untrusted Java applets could create domain\nname resolution cache entries, allowing an attacker to manipulate\nname resolution within the JVM. (CVE-2010-4448)\n\nIt was discovered that the Java launcher did not did not properly\nsetup the LD_LIBRARY_PATH environment variable. A local attacker\ncould exploit this to execute arbitrary code as the user invoking\nthe program. (CVE-2010-4450)\n\nIt was discovered that within the Swing library, forged timer events\ncould allow bypass of SecurityManager checks. This could allow an\nattacker to access restricted resources. (CVE-2010-4465)\n\nIt was discovered that certain bytecode combinations confused memory\nmanagement within the HotSpot JVM. This could allow an attacker to\ncause a denial of service through an application crash or possibly\ninject code. (CVE-2010-4469)\n\nIt was discovered that the way JAXP components were handled\nallowed them to be manipulated by untrusted applets. An attacker\ncould use this to bypass XML processing restrictions and elevate\nprivileges. (CVE-2010-4470)\n\nIt was discovered that the Java2D subcomponent, when processing broken\nCFF fonts could leak system properties. (CVE-2010-4471)\n\nIt was discovered that a flaw in the XML Digital Signature\ncomponent could allow an attacker to cause untrusted code to\nreplace the XML Digital Signature Transform or C14N algorithm\nimplementations. (CVE-2010-4472)\n\nKonstantin Preisser and others discovered that specific double literals\nwere improperly handled, allowing a remote attacker to cause a denial\nof service. (CVE-2010-4476)\n\nIt was discovered that the JNLPClassLoader class when handling multiple\nsignatures allowed remote attackers to gain privileges due to the\nassignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~10.04.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"}],"karmic":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~9.10.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]},{"id":"USN-1079-2","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 Vulnerabilities (armel packages only)\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-15T00:49:56.326202","description":"USN-1079-1 fixed vulnerabilities in OpenJDK 6 for non-armel (ARM)\narchitectures. This update provides the corresponding updates for\nOpenJDK 6 for use with the armel (ARM) architectures.\n\nIn order to build the armel (ARM) OpenJDK 6 update for Ubuntu 10.04\nLTS, it was necessary to rebuild binutils and gcj-4.4 from Ubuntu\n10.04 LTS updates.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n\n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n\n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n\n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n\n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n\n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n\n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n\n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n\n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~10.04.2","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"}],"karmic":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~9.10.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2011-0706","CVE-2010-4470","CVE-2010-4471","CVE-2010-4476","CVE-2010-4472","CVE-2010-4465","CVE-2010-4469"]},{"id":"USN-1079-3","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 vulnerabilities in Ubuntu 10.10 for armel (ARM) architecture.\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-17T18:11:46.065113","description":"USN-1079-2 fixed vulnerabilities in OpenJDK 6 for armel (ARM)\narchitectures in Ubuntu 9.10 and Ubuntu 10.04 LTS. This update fixes\nvulnerabilities in OpenJDK 6 for armel (ARM) architectures for Ubuntu\n10.10.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n \n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n \n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n \n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n \n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n \n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n \n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n \n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n \n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu2.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]}]},{"id":"CVE-2010-4469","published":"2011-02-17T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) in Oracle\nJava SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and\nearlier, and 1.4.2_29 and earlier allows remote untrusted Java Web Start\napplications and untrusted Java applets to affect confidentiality,\nintegrity, and availability via unknown vectors related to HotSpot. NOTE:\nthe previous information was obtained from the February 2011 CPU. Oracle\nhas not commented on claims from a downstream vendor that this issue is\nheap corruption related to the Verifier and \"backward jsrs.\"","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"may not affect openjdk"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.html","https://ubuntu.com/security/notices/USN-1079-1","https://ubuntu.com/security/notices/USN-1079-2","https://ubuntu.com/security/notices/USN-1079-3","https://www.cve.org/CVERecord?id=CVE-2010-4469"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b27-1.12.3-0ubuntu1~08.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b20-1.9.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.7-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.7-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b18-1.8.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.7-0ubuntu1~10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.7-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-28","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.24-1build0.8.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.24-1build0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.24-1build0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6.26-1oneiric1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.24-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1079-1","USN-1079-2","USN-1079-3"],"notices":[{"id":"USN-1079-1","title":"OpenJDK 6 vulnerabilities","summary":"","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes. \n","references":[],"published":"2011-03-01T07:58:19.268819","description":"It was discovered that untrusted Java applets could create domain\nname resolution cache entries, allowing an attacker to manipulate\nname resolution within the JVM. (CVE-2010-4448)\n\nIt was discovered that the Java launcher did not did not properly\nsetup the LD_LIBRARY_PATH environment variable. A local attacker\ncould exploit this to execute arbitrary code as the user invoking\nthe program. (CVE-2010-4450)\n\nIt was discovered that within the Swing library, forged timer events\ncould allow bypass of SecurityManager checks. This could allow an\nattacker to access restricted resources. (CVE-2010-4465)\n\nIt was discovered that certain bytecode combinations confused memory\nmanagement within the HotSpot JVM. This could allow an attacker to\ncause a denial of service through an application crash or possibly\ninject code. (CVE-2010-4469)\n\nIt was discovered that the way JAXP components were handled\nallowed them to be manipulated by untrusted applets. An attacker\ncould use this to bypass XML processing restrictions and elevate\nprivileges. (CVE-2010-4470)\n\nIt was discovered that the Java2D subcomponent, when processing broken\nCFF fonts could leak system properties. (CVE-2010-4471)\n\nIt was discovered that a flaw in the XML Digital Signature\ncomponent could allow an attacker to cause untrusted code to\nreplace the XML Digital Signature Transform or C14N algorithm\nimplementations. (CVE-2010-4472)\n\nKonstantin Preisser and others discovered that specific double literals\nwere improperly handled, allowing a remote attacker to cause a denial\nof service. (CVE-2010-4476)\n\nIt was discovered that the JNLPClassLoader class when handling multiple\nsignatures allowed remote attackers to gain privileges due to the\nassignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~10.04.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"}],"karmic":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~9.10.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]},{"id":"USN-1079-2","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 Vulnerabilities (armel packages only)\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-15T00:49:56.326202","description":"USN-1079-1 fixed vulnerabilities in OpenJDK 6 for non-armel (ARM)\narchitectures. This update provides the corresponding updates for\nOpenJDK 6 for use with the armel (ARM) architectures.\n\nIn order to build the armel (ARM) OpenJDK 6 update for Ubuntu 10.04\nLTS, it was necessary to rebuild binutils and gcj-4.4 from Ubuntu\n10.04 LTS updates.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n\n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n\n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n\n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n\n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n\n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n\n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n\n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n\n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~10.04.2","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"}],"karmic":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~9.10.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2011-0706","CVE-2010-4470","CVE-2010-4471","CVE-2010-4476","CVE-2010-4472","CVE-2010-4465","CVE-2010-4469"]},{"id":"USN-1079-3","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 vulnerabilities in Ubuntu 10.10 for armel (ARM) architecture.\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-17T18:11:46.065113","description":"USN-1079-2 fixed vulnerabilities in OpenJDK 6 for armel (ARM)\narchitectures in Ubuntu 9.10 and Ubuntu 10.04 LTS. This update fixes\nvulnerabilities in OpenJDK 6 for armel (ARM) architectures for Ubuntu\n10.10.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n \n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n \n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n \n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n \n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n \n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n \n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n \n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n \n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu2.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]}]},{"id":"CVE-2010-4465","published":"2011-02-17T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) in Oracle\nJava SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and\nearlier, and 1.4.2_29 and earlier allows remote untrusted Java Web Start\napplications and untrusted Java applets to affect confidentiality,\nintegrity, and availability via unknown vectors related to Swing. NOTE:\nthe previous information was obtained from the February 2011 CPU. Oracle\nhas not commented on claims from a downstream vendor that this issue is\nrelated to the lack of framework support by AWT event dispatch, and/or\n\"clipboard access in Applets.\"","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"may not affect openjdk"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.html","https://ubuntu.com/security/notices/USN-1079-1","https://ubuntu.com/security/notices/USN-1079-2","https://ubuntu.com/security/notices/USN-1079-3","https://www.cve.org/CVERecord?id=CVE-2010-4465"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b27-1.12.3-0ubuntu1~08.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b20-1.9.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.7-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.7-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b22-1.10-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b22-1.10-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b18-1.8.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.7-0ubuntu1~10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.7-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-28","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.24-1build0.8.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.24-1build0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.24-1build0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6.26-1oneiric1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.24-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1079-1","USN-1079-2","USN-1079-3"],"notices":[{"id":"USN-1079-1","title":"OpenJDK 6 vulnerabilities","summary":"","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes. \n","references":[],"published":"2011-03-01T07:58:19.268819","description":"It was discovered that untrusted Java applets could create domain\nname resolution cache entries, allowing an attacker to manipulate\nname resolution within the JVM. (CVE-2010-4448)\n\nIt was discovered that the Java launcher did not did not properly\nsetup the LD_LIBRARY_PATH environment variable. A local attacker\ncould exploit this to execute arbitrary code as the user invoking\nthe program. (CVE-2010-4450)\n\nIt was discovered that within the Swing library, forged timer events\ncould allow bypass of SecurityManager checks. This could allow an\nattacker to access restricted resources. (CVE-2010-4465)\n\nIt was discovered that certain bytecode combinations confused memory\nmanagement within the HotSpot JVM. This could allow an attacker to\ncause a denial of service through an application crash or possibly\ninject code. (CVE-2010-4469)\n\nIt was discovered that the way JAXP components were handled\nallowed them to be manipulated by untrusted applets. An attacker\ncould use this to bypass XML processing restrictions and elevate\nprivileges. (CVE-2010-4470)\n\nIt was discovered that the Java2D subcomponent, when processing broken\nCFF fonts could leak system properties. (CVE-2010-4471)\n\nIt was discovered that a flaw in the XML Digital Signature\ncomponent could allow an attacker to cause untrusted code to\nreplace the XML Digital Signature Transform or C14N algorithm\nimplementations. (CVE-2010-4472)\n\nKonstantin Preisser and others discovered that specific double literals\nwere improperly handled, allowing a remote attacker to cause a denial\nof service. (CVE-2010-4476)\n\nIt was discovered that the JNLPClassLoader class when handling multiple\nsignatures allowed remote attackers to gain privileges due to the\nassignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~10.04.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"}],"karmic":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~9.10.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]},{"id":"USN-1079-2","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 Vulnerabilities (armel packages only)\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-15T00:49:56.326202","description":"USN-1079-1 fixed vulnerabilities in OpenJDK 6 for non-armel (ARM)\narchitectures. This update provides the corresponding updates for\nOpenJDK 6 for use with the armel (ARM) architectures.\n\nIn order to build the armel (ARM) OpenJDK 6 update for Ubuntu 10.04\nLTS, it was necessary to rebuild binutils and gcj-4.4 from Ubuntu\n10.04 LTS updates.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n\n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n\n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n\n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n\n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n\n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n\n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n\n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n\n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~10.04.2","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"}],"karmic":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~9.10.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2011-0706","CVE-2010-4470","CVE-2010-4471","CVE-2010-4476","CVE-2010-4472","CVE-2010-4465","CVE-2010-4469"]},{"id":"USN-1079-3","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 vulnerabilities in Ubuntu 10.10 for armel (ARM) architecture.\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-17T18:11:46.065113","description":"USN-1079-2 fixed vulnerabilities in OpenJDK 6 for armel (ARM)\narchitectures in Ubuntu 9.10 and Ubuntu 10.04 LTS. This update fixes\nvulnerabilities in OpenJDK 6 for armel (ARM) architectures for Ubuntu\n10.10.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n \n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n \n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n \n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n \n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n \n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n \n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n \n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n \n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu2.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]}]},{"id":"CVE-2010-4450","published":"2011-02-17T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) in Oracle\nJava SE and Java for Business 6 Update 23 and earlier for Solaris and\nLinux; 5.0 Update 27 and earlier for Solaris and Linux; and 1.4.2_29 and\nearlier for Solaris and Linux allows local standalone applications to\naffect confidentiality, integrity, and availability via unknown vectors\nrelated to Launcher. NOTE: the previous information was obtained from the\nFebruary 2011 CPU. Oracle has not commented on claims from a downstream\nvendor that this issue is an untrusted search path vulnerability involving\nan empty LD_LIBRARY_PATH environment variable.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.html","https://ubuntu.com/security/notices/USN-1079-1","https://ubuntu.com/security/notices/USN-1079-2","https://ubuntu.com/security/notices/USN-1079-3","https://www.cve.org/CVERecord?id=CVE-2010-4450"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b27-1.12.3-0ubuntu1~08.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b20-1.9.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.7-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.7-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b18-1.8.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.7-0ubuntu1~10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.7-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-28","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.24-1build0.8.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.24-1build0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.24-1build0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6.26-1oneiric1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.24-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1079-1","USN-1079-2","USN-1079-3"],"notices":[{"id":"USN-1079-1","title":"OpenJDK 6 vulnerabilities","summary":"","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes. \n","references":[],"published":"2011-03-01T07:58:19.268819","description":"It was discovered that untrusted Java applets could create domain\nname resolution cache entries, allowing an attacker to manipulate\nname resolution within the JVM. (CVE-2010-4448)\n\nIt was discovered that the Java launcher did not did not properly\nsetup the LD_LIBRARY_PATH environment variable. A local attacker\ncould exploit this to execute arbitrary code as the user invoking\nthe program. (CVE-2010-4450)\n\nIt was discovered that within the Swing library, forged timer events\ncould allow bypass of SecurityManager checks. This could allow an\nattacker to access restricted resources. (CVE-2010-4465)\n\nIt was discovered that certain bytecode combinations confused memory\nmanagement within the HotSpot JVM. This could allow an attacker to\ncause a denial of service through an application crash or possibly\ninject code. (CVE-2010-4469)\n\nIt was discovered that the way JAXP components were handled\nallowed them to be manipulated by untrusted applets. An attacker\ncould use this to bypass XML processing restrictions and elevate\nprivileges. (CVE-2010-4470)\n\nIt was discovered that the Java2D subcomponent, when processing broken\nCFF fonts could leak system properties. (CVE-2010-4471)\n\nIt was discovered that a flaw in the XML Digital Signature\ncomponent could allow an attacker to cause untrusted code to\nreplace the XML Digital Signature Transform or C14N algorithm\nimplementations. (CVE-2010-4472)\n\nKonstantin Preisser and others discovered that specific double literals\nwere improperly handled, allowing a remote attacker to cause a denial\nof service. (CVE-2010-4476)\n\nIt was discovered that the JNLPClassLoader class when handling multiple\nsignatures allowed remote attackers to gain privileges due to the\nassignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~10.04.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"}],"karmic":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~9.10.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]},{"id":"USN-1079-2","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 Vulnerabilities (armel packages only)\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-15T00:49:56.326202","description":"USN-1079-1 fixed vulnerabilities in OpenJDK 6 for non-armel (ARM)\narchitectures. This update provides the corresponding updates for\nOpenJDK 6 for use with the armel (ARM) architectures.\n\nIn order to build the armel (ARM) OpenJDK 6 update for Ubuntu 10.04\nLTS, it was necessary to rebuild binutils and gcj-4.4 from Ubuntu\n10.04 LTS updates.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n\n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n\n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n\n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n\n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n\n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n\n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n\n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n\n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~10.04.2","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"}],"karmic":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~9.10.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2011-0706","CVE-2010-4470","CVE-2010-4471","CVE-2010-4476","CVE-2010-4472","CVE-2010-4465","CVE-2010-4469"]},{"id":"USN-1079-3","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 vulnerabilities in Ubuntu 10.10 for armel (ARM) architecture.\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-17T18:11:46.065113","description":"USN-1079-2 fixed vulnerabilities in OpenJDK 6 for armel (ARM)\narchitectures in Ubuntu 9.10 and Ubuntu 10.04 LTS. This update fixes\nvulnerabilities in OpenJDK 6 for armel (ARM) architectures for Ubuntu\n10.10.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n \n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n \n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n \n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n \n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n \n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n \n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n \n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n \n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu2.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]}]},{"id":"CVE-2010-4448","published":"2011-02-17T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the Java Runtime Environment (JRE) in Oracle\nJava SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and\nearlier, and 1.4.2_29 earlier allows remote untrusted Java Web Start\napplications and untrusted Java applets to affect integrity via unknown\nvectors related to Networking. NOTE: the previous information was obtained\nfrom the February 2011 CPU. Oracle has not commented on claims from a\ndownstream vendor that this issue involves \"DNS cache poisoning by\nuntrusted applets.\"","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"may not affect openjdk"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.html","https://ubuntu.com/security/notices/USN-1079-1","https://ubuntu.com/security/notices/USN-1079-2","https://ubuntu.com/security/notices/USN-1079-3","https://www.cve.org/CVERecord?id=CVE-2010-4448"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[],"openjdk-6b18":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b27-1.12.3-0ubuntu1~08.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b20-1.9.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b20-1.9.7-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b20-1.9.7-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6b22-1.10.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b18-1.8.7-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6b18-1.8.7-0ubuntu1~10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.7-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"6b18-1.8.7-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b24","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-28","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.24-1build0.8.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.24-1build0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.24-1build0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"6.24-1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"6.26-1oneiric1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.24-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1079-1","USN-1079-2","USN-1079-3"],"notices":[{"id":"USN-1079-1","title":"OpenJDK 6 vulnerabilities","summary":"","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes. \n","references":[],"published":"2011-03-01T07:58:19.268819","description":"It was discovered that untrusted Java applets could create domain\nname resolution cache entries, allowing an attacker to manipulate\nname resolution within the JVM. (CVE-2010-4448)\n\nIt was discovered that the Java launcher did not did not properly\nsetup the LD_LIBRARY_PATH environment variable. A local attacker\ncould exploit this to execute arbitrary code as the user invoking\nthe program. (CVE-2010-4450)\n\nIt was discovered that within the Swing library, forged timer events\ncould allow bypass of SecurityManager checks. This could allow an\nattacker to access restricted resources. (CVE-2010-4465)\n\nIt was discovered that certain bytecode combinations confused memory\nmanagement within the HotSpot JVM. This could allow an attacker to\ncause a denial of service through an application crash or possibly\ninject code. (CVE-2010-4469)\n\nIt was discovered that the way JAXP components were handled\nallowed them to be manipulated by untrusted applets. An attacker\ncould use this to bypass XML processing restrictions and elevate\nprivileges. (CVE-2010-4470)\n\nIt was discovered that the Java2D subcomponent, when processing broken\nCFF fonts could leak system properties. (CVE-2010-4471)\n\nIt was discovered that a flaw in the XML Digital Signature\ncomponent could allow an attacker to cause untrusted code to\nreplace the XML Digital Signature Transform or C14N algorithm\nimplementations. (CVE-2010-4472)\n\nKonstantin Preisser and others discovered that specific double literals\nwere improperly handled, allowing a remote attacker to cause a denial\nof service. (CVE-2010-4476)\n\nIt was discovered that the JNLPClassLoader class when handling multiple\nsignatures allowed remote attackers to gain privileges due to the\nassignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~10.04.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~10.04.1"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1"}],"karmic":[{"name":"openjdk-6","version":"6b20-1.9.7-0ubuntu1~9.10.1","description":"","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre-lib","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b20-1.9.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b20-1.9.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]},{"id":"USN-1079-2","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 Vulnerabilities (armel packages only)\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-15T00:49:56.326202","description":"USN-1079-1 fixed vulnerabilities in OpenJDK 6 for non-armel (ARM)\narchitectures. This update provides the corresponding updates for\nOpenJDK 6 for use with the armel (ARM) architectures.\n\nIn order to build the armel (ARM) OpenJDK 6 update for Ubuntu 10.04\nLTS, it was necessary to rebuild binutils and gcj-4.4 from Ubuntu\n10.04 LTS updates.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n\n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n\n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n\n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n\n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n\n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n\n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n\n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n\n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~10.04.2","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~10.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~10.04.2"}],"karmic":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu1~9.10.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu1~9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu1~9.10.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2011-0706","CVE-2010-4470","CVE-2010-4471","CVE-2010-4476","CVE-2010-4472","CVE-2010-4465","CVE-2010-4469"]},{"id":"USN-1079-3","title":"OpenJDK 6 vulnerabilities","summary":"OpenJDK 6 vulnerabilities in Ubuntu 10.10 for armel (ARM) architecture.\n","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2011-03-17T18:11:46.065113","description":"USN-1079-2 fixed vulnerabilities in OpenJDK 6 for armel (ARM)\narchitectures in Ubuntu 9.10 and Ubuntu 10.04 LTS. This update fixes\nvulnerabilities in OpenJDK 6 for armel (ARM) architectures for Ubuntu\n10.10.\n\nOriginal advisory details:\n\n It was discovered that untrusted Java applets could create domain\n name resolution cache entries, allowing an attacker to manipulate\n name resolution within the JVM. (CVE-2010-4448)\n \n It was discovered that the Java launcher did not did not properly\n setup the LD_LIBRARY_PATH environment variable. A local attacker\n could exploit this to execute arbitrary code as the user invoking\n the program. (CVE-2010-4450)\n \n It was discovered that within the Swing library, forged timer events\n could allow bypass of SecurityManager checks. This could allow an\n attacker to access restricted resources. (CVE-2010-4465)\n \n It was discovered that certain bytecode combinations confused memory\n management within the HotSpot JVM. This could allow an attacker to\n cause a denial of service through an application crash or possibly\n inject code. (CVE-2010-4469)\n \n It was discovered that the way JAXP components were handled\n allowed them to be manipulated by untrusted applets. An attacker\n could use this to bypass XML processing restrictions and elevate\n privileges. (CVE-2010-4470)\n \n It was discovered that the Java2D subcomponent, when processing broken\n CFF fonts could leak system properties. (CVE-2010-4471)\n \n It was discovered that a flaw in the XML Digital Signature\n component could allow an attacker to cause untrusted code to\n replace the XML Digital Signature Transform or C14N algorithm\n implementations. (CVE-2010-4472)\n \n Konstantin Preisser and others discovered that specific double literals\n were improperly handled, allowing a remote attacker to cause a denial\n of service. (CVE-2010-4476)\n \n It was discovered that the JNLPClassLoader class when handling multiple\n signatures allowed remote attackers to gain privileges due to the\n assignment of an inappropriate security descriptor. (CVE-2011-0706)\n","is_hidden":false,"release_packages":{"maverick":[{"name":"openjdk-6b18","version":"6b18-1.8.7-0ubuntu2.1","description":"Alternative JVM for OpenJDK, using Cacao","is_source":true},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"icedtea6-plugin","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.7-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.7-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2010-4448","CVE-2010-4450","CVE-2010-4465","CVE-2010-4469","CVE-2010-4470","CVE-2010-4471","CVE-2010-4472","CVE-2010-4476","CVE-2011-0706"]}]},{"id":"CVE-2011-1000","published":"2011-02-16T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\njingle-factory.c in Telepathy Gabble 0.11 before 0.11.7, 0.10 before\n0.10.5, and 0.8 before 0.8.15 allows remote attackers to sniff audio and\nvideo calls via a crafted google:jingleinfo stanza that specifies an\nalternate server for streamed media.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://lists.freedesktop.org/archives/telepathy/2011-February/005272.html","http://lists.freedesktop.org/archives/telepathy/2011-February/005273.html","http://lists.freedesktop.org/archives/telepathy/2011-February/005274.html","https://bugs.freedesktop.org/show_bug.cgi?id=34048","https://ubuntu.com/security/notices/USN-1067-1","https://www.cve.org/CVERecord?id=CVE-2011-1000"],"bugs":["https://bugs.launchpad.net/ubuntu/natty/+source/telepathy-gabble/+bug/720201"],"patches":{"telepathy-gabble":["upstream: http://git.collabora.co.uk/?p=telepathy-gabble.git;a=commitdiff;h=158c988","upstream: http://git.collabora.co.uk/?p=telepathy-gabble.git;a=commitdiff;h=5b9ee62","upstream: http://git.collabora.co.uk/?p=telepathy-gabble.git;a=commitdiff;h=ed73e1f"]},"tags":{},"packages":[{"name":"telepathy-gabble","source":"https://ubuntu.com/security/cve?package=telepathy-gabble","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=telepathy-gabble","debian":"https://tracker.debian.org/pkg/telepathy-gabble","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"0.8.7-1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"0.8.12-0ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"0.10.0-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"0.11.6-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"0.11.6-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0723","published":"2011-02-16T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nFFmpeg 0.5.x, as used in MPlayer and other products, allows remote\nattackers to cause a denial of service (application crash) or possibly\nexecute arbitrary code via a malformed VC-1 file.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"as of 2010-02-16, fix may be incomplete, see upstream bug."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1104-1","https://www.cve.org/CVERecord?id=CVE-2011-0723"],"bugs":["https://roundup.ffmpeg.org/issue2584","https://bugs.launchpad.net/ubuntu/+source/vlc/+bug/690169"],"patches":{"ffmpeg":["upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=f7494394ee8b375c9962e7528e7b7de6db76518e","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=8069e2f6fbd79e3d3d2ba17f5f097475b43e2921","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=c47ca25e74bbe465cdc8b99d4f6ab4f0ad5e4229","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=2bbec1eda46d907605772a8b6e8263caa4bc4c82","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=cf69619141a5742c4e4156177335d553c5bab7b6"],"libav":["upstream: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=c47ca25e74bbe465cdc8b99d4f6ab4f0ad5e4229","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=2bbec1eda46d907605772a8b6e8263caa4bc4c82"]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"3:0.cvs20070307-5ubuntu7.6","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"4:0.5+svn20090706-2ubuntu2.3","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:0.5.1-1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"4:0.6-2ubuntu6.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libav","source":"https://ubuntu.com/security/cve?package=libav","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libav","debian":"https://tracker.debian.org/pkg/libav","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1104-1"],"notices":[{"id":"USN-1104-1","title":"FFmpeg vulnerabilities","summary":"FFmpeg could be made to run programs as your login if it opened a specially\ncrafted file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-04-04T17:23:50.332888","description":"Cesar Bernardini and Felipe Andres Manzano discovered that FFmpeg\nincorrectly handled certain malformed flic files. If a user were tricked\ninto opening a crafted flic file, an attacker could cause a denial of\nservice via application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 8.04 LTS, 9.10 and 10.04 LTS. (CVE-2010-3429)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nwmv files. If a user were tricked into opening a crafted wmv file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 8.04 LTS, 9.10 and 10.04 LTS.\n(CVE-2010-3908)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed ogg\nfiles. If a user were tricked into opening a crafted ogg file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program.\n(CVE-2010-4704)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed WebM\nfiles. If a user were tricked into opening a crafted WebM file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program.\n(CVE-2011-0480)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nRealMedia files. If a user were tricked into opening a crafted RealMedia\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 8.04 LTS, 9.10 and 10.04 LTS.\n(CVE-2011-0722)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nVC1 files. If a user were tricked into opening a crafted VC1 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2011-0723)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"ffmpeg","version":"3:0.cvs20070307-5ubuntu7.6","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat1d","version":"3:0.cvs20070307-5ubuntu7.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/3:0.cvs20070307-5ubuntu7.6"},{"name":"libavcodec1d","version":"3:0.cvs20070307-5ubuntu7.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/3:0.cvs20070307-5ubuntu7.6"}],"lucid":[{"name":"ffmpeg","version":"4:0.5.1-1ubuntu1.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5.1-1ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.1-1ubuntu1.1"},{"name":"libavcodec52","version":"4:0.5.1-1ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.1-1ubuntu1.1"}],"maverick":[{"name":"ffmpeg","version":"4:0.6-2ubuntu6.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.6-2ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.6-2ubuntu6.1"},{"name":"libavcodec52","version":"4:0.6-2ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.6-2ubuntu6.1"}],"karmic":[{"name":"ffmpeg","version":"4:0.5+svn20090706-2ubuntu2.3","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5+svn20090706-2ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5+svn20090706-2ubuntu2.3"},{"name":"libavcodec52","version":"4:0.5+svn20090706-2ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5+svn20090706-2ubuntu2.3"}]},"type":"USN","cves_ids":["CVE-2010-4704","CVE-2011-0723","CVE-2010-3429","CVE-2010-3908","CVE-2011-0722","CVE-2011-0480"]}]},{"id":"CVE-2011-0722","published":"2011-02-16T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nFFmpeg before 0.5.4, as used in MPlayer and other products, allows remote\nattackers to cause a denial of service (heap memory corruption and\napplication crash) or possibly execute arbitrary code via a malformed\nRealMedia file.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1104-1","https://www.cve.org/CVERecord?id=CVE-2011-0722"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/vlc/+bug/690169"],"patches":{"ffmpeg":["upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=44511b17cbbb524602c91a198e7314fa57a7062a","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=808f9ce727fb05058a43de8d64539eddf5fa74d6","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=ec10d2d53999f6edf7d7b5ac88df263eccfb1fb0","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=d90aeeaf569e4a08c30b3d1d09c3cff3a86eb431"]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"4:0.5+svn20090706-2ubuntu2.3","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:0.5.1-1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"4:0.6-2ubuntu6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1104-1"],"notices":[{"id":"USN-1104-1","title":"FFmpeg vulnerabilities","summary":"FFmpeg could be made to run programs as your login if it opened a specially\ncrafted file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-04-04T17:23:50.332888","description":"Cesar Bernardini and Felipe Andres Manzano discovered that FFmpeg\nincorrectly handled certain malformed flic files. If a user were tricked\ninto opening a crafted flic file, an attacker could cause a denial of\nservice via application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 8.04 LTS, 9.10 and 10.04 LTS. (CVE-2010-3429)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nwmv files. If a user were tricked into opening a crafted wmv file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 8.04 LTS, 9.10 and 10.04 LTS.\n(CVE-2010-3908)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed ogg\nfiles. If a user were tricked into opening a crafted ogg file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program.\n(CVE-2010-4704)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed WebM\nfiles. If a user were tricked into opening a crafted WebM file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program.\n(CVE-2011-0480)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nRealMedia files. If a user were tricked into opening a crafted RealMedia\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 8.04 LTS, 9.10 and 10.04 LTS.\n(CVE-2011-0722)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nVC1 files. If a user were tricked into opening a crafted VC1 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2011-0723)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"ffmpeg","version":"3:0.cvs20070307-5ubuntu7.6","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat1d","version":"3:0.cvs20070307-5ubuntu7.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/3:0.cvs20070307-5ubuntu7.6"},{"name":"libavcodec1d","version":"3:0.cvs20070307-5ubuntu7.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/3:0.cvs20070307-5ubuntu7.6"}],"lucid":[{"name":"ffmpeg","version":"4:0.5.1-1ubuntu1.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5.1-1ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.1-1ubuntu1.1"},{"name":"libavcodec52","version":"4:0.5.1-1ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.1-1ubuntu1.1"}],"maverick":[{"name":"ffmpeg","version":"4:0.6-2ubuntu6.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.6-2ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.6-2ubuntu6.1"},{"name":"libavcodec52","version":"4:0.6-2ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.6-2ubuntu6.1"}],"karmic":[{"name":"ffmpeg","version":"4:0.5+svn20090706-2ubuntu2.3","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5+svn20090706-2ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5+svn20090706-2ubuntu2.3"},{"name":"libavcodec52","version":"4:0.5+svn20090706-2ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5+svn20090706-2ubuntu2.3"}]},"type":"USN","cves_ids":["CVE-2010-4704","CVE-2011-0723","CVE-2010-3429","CVE-2010-3908","CVE-2011-0722","CVE-2011-0480"]}]},{"id":"CVE-2010-3908","published":"2011-02-16T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nFFmpeg before 0.5.4, as used in MPlayer and other products, allows remote\nattackers to cause a denial of service (memory corruption and application\ncrash) or possibly execute arbitrary code via a malformed WMV file.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1104-1","https://www.cve.org/CVERecord?id=CVE-2010-3908"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/vlc/+bug/690169"],"patches":{"ffmpeg":["upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=48b086b0efa40799ace96bcec010b6b72a9490d6","upstream: http://git.videolan.org/?p=ffmpeg.git;a=commit;h=445f0a8b666a34e6402f6ae96c6804c8bc024baa"]},"tags":{},"packages":[{"name":"ffmpeg","source":"https://ubuntu.com/security/cve?package=ffmpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ffmpeg","debian":"https://tracker.debian.org/pkg/ffmpeg","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"3:0.cvs20070307-5ubuntu7.6","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"4:0.5+svn20090706-2ubuntu2.3","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:0.5.1-1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"4:0.6-2ubuntu6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1104-1"],"notices":[{"id":"USN-1104-1","title":"FFmpeg vulnerabilities","summary":"FFmpeg could be made to run programs as your login if it opened a specially\ncrafted file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-04-04T17:23:50.332888","description":"Cesar Bernardini and Felipe Andres Manzano discovered that FFmpeg\nincorrectly handled certain malformed flic files. If a user were tricked\ninto opening a crafted flic file, an attacker could cause a denial of\nservice via application crash, or possibly execute arbitrary code with the\nprivileges of the user invoking the program. This issue only affected\nUbuntu 8.04 LTS, 9.10 and 10.04 LTS. (CVE-2010-3429)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nwmv files. If a user were tricked into opening a crafted wmv file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. This issue only affected Ubuntu 8.04 LTS, 9.10 and 10.04 LTS.\n(CVE-2010-3908)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed ogg\nfiles. If a user were tricked into opening a crafted ogg file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program.\n(CVE-2010-4704)\n\nIt was discovered that FFmpeg incorrectly handled certain malformed WebM\nfiles. If a user were tricked into opening a crafted WebM file, an attacker\ncould cause a denial of service via application crash, or possibly execute\narbitrary code with the privileges of the user invoking the program.\n(CVE-2011-0480)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nRealMedia files. If a user were tricked into opening a crafted RealMedia\nfile, an attacker could cause a denial of service via application crash, or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program. This issue only affected Ubuntu 8.04 LTS, 9.10 and 10.04 LTS.\n(CVE-2011-0722)\n\nDan Rosenberg discovered that FFmpeg incorrectly handled certain malformed\nVC1 files. If a user were tricked into opening a crafted VC1 file, an\nattacker could cause a denial of service via application crash, or possibly\nexecute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2011-0723)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"ffmpeg","version":"3:0.cvs20070307-5ubuntu7.6","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat1d","version":"3:0.cvs20070307-5ubuntu7.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/3:0.cvs20070307-5ubuntu7.6"},{"name":"libavcodec1d","version":"3:0.cvs20070307-5ubuntu7.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/3:0.cvs20070307-5ubuntu7.6"}],"lucid":[{"name":"ffmpeg","version":"4:0.5.1-1ubuntu1.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5.1-1ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.1-1ubuntu1.1"},{"name":"libavcodec52","version":"4:0.5.1-1ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5.1-1ubuntu1.1"}],"maverick":[{"name":"ffmpeg","version":"4:0.6-2ubuntu6.1","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.6-2ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.6-2ubuntu6.1"},{"name":"libavcodec52","version":"4:0.6-2ubuntu6.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.6-2ubuntu6.1"}],"karmic":[{"name":"ffmpeg","version":"4:0.5+svn20090706-2ubuntu2.3","description":"multimedia player, server and encoder","is_source":true},{"name":"libavformat52","version":"4:0.5+svn20090706-2ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5+svn20090706-2ubuntu2.3"},{"name":"libavcodec52","version":"4:0.5+svn20090706-2ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/ffmpeg","version_link":"https://launchpad.net/ubuntu/+source/ffmpeg/4:0.5+svn20090706-2ubuntu2.3"}]},"type":"USN","cves_ids":["CVE-2010-4704","CVE-2011-0723","CVE-2010-3429","CVE-2010-3908","CVE-2011-0722","CVE-2011-0480"]}]},{"id":"CVE-2011-0721","published":"2011-02-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple CRLF injection vulnerabilities in (1) chfn and (2) chsh in shadow\n1:4.1.4 allow local users to add new users or groups to /etc/passwd via the\nGECOS field.","ubuntu_description":"\nKees Cook discovered that some shadow utilities did not correctly\nvalidate user input. A local attacker could exploit this flaw to inject\nnewlines into the /etc/passwd file. If the system was configured to use NIS,\nthis could lead to existing NIS groups or users gaining or losing access to\nthe system, resulting in a denial of service or unauthorized access.","notes":[{"author":"kees","note":"introduce in the upstream 4.1.2 changes\nhttps://alioth.debian.org/scm/viewvc.php?view=rev&root=pkg-shadow&revision=1978"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1065-1","https://www.cve.org/CVERecord?id=CVE-2011-0721"],"bugs":[""],"patches":{"shadow":[]},"tags":{},"packages":[{"name":"shadow","source":"https://ubuntu.com/security/cve?package=shadow","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=shadow","debian":"https://tracker.debian.org/pkg/shadow","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1:4.1.4.1-1ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1:4.1.4.2-1ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1:4.1.4.2-1ubuntu3.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.1.4.3","component":null,"pocket":"security"}]}],"notices_ids":["USN-1065-1"],"notices":[{"id":"USN-1065-1","title":"shadow vulnerability","summary":"Newline injection possible into /etc/passwd\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-15T20:49:46.397689","description":"Kees Cook discovered that some shadow utilities did not correctly validate\nuser input. A local attacker could exploit this flaw to inject newlines into\nthe /etc/passwd file. If the system was configured to use NIS, this could\nlead to existing NIS groups or users gaining or losing access to the system,\nresulting in a denial of service or unauthorized access.\n","is_hidden":false,"release_packages":{"lucid":[{"name":"shadow","version":"1:4.1.4.2-1ubuntu2.2","description":"system login tools","is_source":true},{"name":"passwd","version":"1:4.1.4.2-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/shadow","version_link":"https://launchpad.net/ubuntu/+source/shadow/1:4.1.4.2-1ubuntu2.2"}],"maverick":[{"name":"shadow","version":"1:4.1.4.2-1ubuntu3.2","description":"system login tools","is_source":true},{"name":"passwd","version":"1:4.1.4.2-1ubuntu3.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/shadow","version_link":"https://launchpad.net/ubuntu/+source/shadow/1:4.1.4.2-1ubuntu3.2"}],"karmic":[{"name":"shadow","version":"1:4.1.4.1-1ubuntu2.2","description":"system login tools","is_source":true},{"name":"passwd","version":"1:4.1.4.1-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/shadow","version_link":"https://launchpad.net/ubuntu/+source/shadow/1:4.1.4.1-1ubuntu2.2"}]},"type":"USN","cves_ids":["CVE-2011-0721"]}]},{"id":"CVE-2011-1031","published":"2011-02-14T22:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe feh_unique_filename function in utils.c in feh 1.11.2 and earlier might\nallow local users to create arbitrary files via a symlink attack on a\n/tmp/feh_ temporary file, a different vulnerability than CVE-2011-0702.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"maverick+ symlink restrictions may block this"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-1031"],"bugs":["https://github.com/derf/feh/issues/#issue/32","https://bugzilla.redhat.com/show_bug.cgi?id=676389"],"patches":{"feh":["upstream: https://derf.homelinux.org/git/feh/commit/?id=23421a86cc826dd30f3dc4f62057fafb04b3ac40"]},"tags":{},"packages":[{"name":"feh","source":"https://ubuntu.com/security/cve?package=feh","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=feh","debian":"https://tracker.debian.org/pkg/feh","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"2.9.3-1","component":null,"pocket":"security"},{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.12-1","component":null,"pocket":"security"},{"release_codename":"utopic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"vivid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"2.9.3-1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [2.9.3-1]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0987","published":"2011-02-14T22:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe PMA_Bookmark_get function in libraries/bookmark.lib.php in phpMyAdmin\n2.11.x before 2.11.11.3, and 3.3.x before 3.3.9.2, does not properly\nrestrict bookmark queries, which makes it easier for remote authenticated\nusers to trigger another user's execution of a SQL query by creating a\nbookmark.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"debdiff in bug is broken"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.phpmyadmin.net/home_page/security/PMASA-2011-2.php","https://www.cve.org/CVERecord?id=CVE-2011-0987"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/phpmyadmin/+bug/731934"],"patches":{"phpmyadmin":["upstream: http://phpmyadmin.git.sourceforge.net/git/gitweb.cgi?p=phpmyadmin/phpmyadmin;a=commit;h=a5464b4daff0059cdf8c9e5f4d54a80e2dd2a5b0"]},"tags":{},"packages":[{"name":"phpmyadmin","source":"https://ubuntu.com/security/cve?package=phpmyadmin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=phpmyadmin","debian":"https://tracker.debian.org/pkg/phpmyadmin","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"4:3.3.7-5build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"4:3.3.9.2-1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"4:3.3.9.2-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"4:3.3.9.2-1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"4:3.3.9.2-1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"4:3.3.9.2-1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"4:3.3.9.2-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.11.11.3,3.3.9.2","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0986","published":"2011-02-14T22:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nphpMyAdmin 2.11.x before 2.11.11.2, and 3.3.x before 3.3.9.1, does not\nproperly handle the absence of the (1) README, (2) ChangeLog, and (3)\nLICENSE files, which allows remote attackers to obtain the installation\npath via a direct request for a nonexistent file.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"paths in packages are already well-known"}],"codename":null,"priority":"negligible","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.phpmyadmin.net/home_page/security/PMASA-2011-1.php","https://www.cve.org/CVERecord?id=CVE-2011-0986"],"bugs":[""],"patches":{"phpmyadmin":["upstream: http://phpmyadmin.git.sourceforge.net/git/gitweb.cgi?p=phpmyadmin/phpmyadmin;a=commit;h=035d002db1e1201e73e560d7d98591563b506a83"]},"tags":{},"packages":[{"name":"phpmyadmin","source":"https://ubuntu.com/security/cve?package=phpmyadmin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=phpmyadmin","debian":"https://tracker.debian.org/pkg/phpmyadmin","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.11.11.2,3.3.9.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0702","published":"2011-02-14T21:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe feh_unique_filename function in utils.c in feh before 1.11.2 might\nallow local users to overwrite arbitrary files via a symlink attack on a\n/tmp/feh_ temporary file.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"maverick+ may be unaffected because of symlink restrictions"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0702"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/feh/+bug/607328","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=612035","https://github.com/derf/feh/issues/#issue/32","https://bugzilla.redhat.com/show_bug.cgi?id=676389"],"patches":{"feh":["upstream: https://derf.homelinux.org/git/feh/commit/?id=23421a86cc826dd30f3dc4f62057fafb04b3ac40"]},"tags":{},"packages":[{"name":"feh","source":"https://ubuntu.com/security/cve?package=feh","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=feh","debian":"https://tracker.debian.org/pkg/feh","statuses":[{"release_codename":"saucy","status":"not-affected","description":"1.13-1","component":null,"pocket":"security"},{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"1.13-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"1.13-1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"1.13-1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"1.13-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.11.2","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0698","published":"2011-02-14T21:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nDirectory traversal vulnerability in Django 1.1.x before 1.1.4 and 1.2.x\nbefore 1.2.5 on Windows might allow remote attackers to read or execute\nfiles via a / (slash) character in a key in a session cookie, related to\nsession replays.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"windows-specific"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.djangoproject.com/weblog/2011/feb/08/security/","https://www.cve.org/CVERecord?id=CVE-2011-0698"],"bugs":[""],"patches":{"python-django":[]},"tags":{},"packages":[{"name":"python-django","source":"https://ubuntu.com/security/cve?package=python-django","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python-django","debian":"https://tracker.debian.org/pkg/python-django","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.1.4,1.2.5","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0447","published":"2011-02-14T21:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nRuby on Rails 2.1.x, 2.2.x, and 2.3.x before 2.3.11, and 3.x before 3.0.4,\ndoes not properly validate HTTP requests that contain an X-Requested-With\nheader, which makes it easier for remote attackers to conduct cross-site\nrequest forgery (CSRF) attacks via forged (1) AJAX or (2) API requests that\nleverage \"combinations of browser plugins and HTTP redirects,\" a related\nissue to CVE-2011-0696.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://weblog.rubyonrails.org/2011/2/8/csrf-protection-bypass-in-ruby-on-rails","http://groups.google.com/group/rubyonrails-security/msg/c22ea1668c0d181c","https://www.cve.org/CVERecord?id=CVE-2011-0447"],"bugs":[""],"patches":{"rails":["upstream: https://github.com/rails/rails/commit/7e86f9b4d2b7dfa974c10ae7e6d8ef90f3d77f06"]},"tags":{},"packages":[{"name":"rails","source":"https://ubuntu.com/security/cve?package=rails","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=rails","debian":"https://tracker.debian.org/pkg/rails","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.2.3-2ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.3.5-1.1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"2.3.5-1.2ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.3.11,3.0.4","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0446","published":"2011-02-14T21:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple cross-site scripting (XSS) vulnerabilities in the mail_to helper\nin Ruby on Rails before 2.3.11, and 3.x before 3.0.4, when javascript\nencoding is used, allow remote attackers to inject arbitrary web script or\nHTML via a crafted (1) name or (2) email value.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://groups.google.com/group/rubyonrails-security/msg/365b8a23b76a6b4a","https://www.cve.org/CVERecord?id=CVE-2011-0446"],"bugs":[""],"patches":{"rails":["upstream: https://github.com/rails/rails/commit/abe97736b8316f1b714cac56c115c0779aa73217"]},"tags":{},"packages":[{"name":"rails","source":"https://ubuntu.com/security/cve?package=rails","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=rails","debian":"https://tracker.debian.org/pkg/rails","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.2.3-2ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.3.5-1.1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"2.3.5-1.2ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.3.11,3.0.4","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0697","published":"2011-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nCross-site scripting (XSS) vulnerability in Django 1.1.x before 1.1.4 and\n1.2.x before 1.2.5 might allow remote attackers to inject arbitrary web\nscript or HTML via a filename associated with a file upload.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.djangoproject.com/weblog/2011/feb/08/security/","https://ubuntu.com/security/notices/USN-1066-1","https://www.cve.org/CVERecord?id=CVE-2011-0697"],"bugs":["https://bugs.edge.launchpad.net/ubuntu/+source/python-django/+bug/719031"],"patches":{"python-django":["upstream: http://code.djangoproject.com/changeset/15470","upstream: http://code.djangoproject.com/changeset/15471","upstream: http://code.djangoproject.com/changeset/15472"]},"tags":{},"packages":[{"name":"python-django","source":"https://ubuntu.com/security/cve?package=python-django","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python-django","debian":"https://tracker.debian.org/pkg/python-django","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.1.1-1ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.1.1-2ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.2.3-1ubuntu0.2.10.10.2","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"1.2.5-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"1.2.5-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.1.4, 1.2.5-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1066-1"],"notices":[{"id":"USN-1066-1","title":"Django vulnerabilities","summary":"Attackers could use Django to perform web-based attacks.\n","instructions":"ATTENTION: This update introduces a small backwards-imcompatible change\nto perform full CSRF validation on all requests. Prior to this update,\nAJAX requests were excepted from CSRF protections. For more details, please\nsee http://docs.djangoproject.com/en/1.2/releases/1.2.5/.\n\nIn general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-17T17:41:07.056174","description":"It was discovered that Django did not properly validate HTTP requests that\ncontain an X-Requested-With header. An attacker could exploit this\nvulnerability to perform cross-site request forgery (CSRF) attacks.\n(CVE-2011-0696)\n\nIt was discovered that Django did not properly sanitize its input when\nperforming file uploads, resulting in cross-site scripting (XSS)\nvulnerabilities. With cross-site scripting vulnerabilities, if a user were\ntricked into viewing server output during a crafted server request, a\nremote attacker could exploit this to modify the contents, or steal\nconfidential data, within the same domain. (CVE-2011-0697)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"python-django","version":"1.1.1-2ubuntu1.3","description":"High-level Python web development framework","is_source":true},{"name":"python-django","version":"1.1.1-2ubuntu1.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python-django","version_link":"https://launchpad.net/ubuntu/+source/python-django/1.1.1-2ubuntu1.3"}],"maverick":[{"name":"python-django","version":"1.2.3-1ubuntu0.2.10.10.2","description":"High-level Python web development framework","is_source":true},{"name":"python-django","version":"1.2.3-1ubuntu0.2.10.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python-django","version_link":"https://launchpad.net/ubuntu/+source/python-django/1.2.3-1ubuntu0.2.10.10.2"}],"karmic":[{"name":"python-django","version":"1.1.1-1ubuntu1.2","description":"High-level Python web development framework","is_source":true},{"name":"python-django","version":"1.1.1-1ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python-django","version_link":"https://launchpad.net/ubuntu/+source/python-django/1.1.1-1ubuntu1.2"}]},"type":"USN","cves_ids":["CVE-2011-0696","CVE-2011-0697"]}]},{"id":"CVE-2011-0696","published":"2011-02-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nDjango 1.1.x before 1.1.4 and 1.2.x before 1.2.5 does not properly validate\nHTTP requests that contain an X-Requested-With header, which makes it\neasier for remote attackers to conduct cross-site request forgery (CSRF)\nattacks via forged AJAX requests that leverage a \"combination of browser\nplugins and redirects,\" a related issue to CVE-2011-0447.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.djangoproject.com/weblog/2011/feb/08/security/","https://ubuntu.com/security/notices/USN-1066-1","https://www.cve.org/CVERecord?id=CVE-2011-0696"],"bugs":["https://bugs.edge.launchpad.net/ubuntu/+source/python-django/+bug/719031"],"patches":{"python-django":["upstream: http://code.djangoproject.com/changeset/15464","upstream: http://code.djangoproject.com/changeset/15465","upstream: http://code.djangoproject.com/changeset/15466"]},"tags":{},"packages":[{"name":"python-django","source":"https://ubuntu.com/security/cve?package=python-django","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python-django","debian":"https://tracker.debian.org/pkg/python-django","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.1.1-1ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.1.1-2ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.2.3-1ubuntu0.2.10.10.2","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"1.2.5-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"1.2.5-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.1.4, 1.2.5-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-1066-1"],"notices":[{"id":"USN-1066-1","title":"Django vulnerabilities","summary":"Attackers could use Django to perform web-based attacks.\n","instructions":"ATTENTION: This update introduces a small backwards-imcompatible change\nto perform full CSRF validation on all requests. Prior to this update,\nAJAX requests were excepted from CSRF protections. For more details, please\nsee http://docs.djangoproject.com/en/1.2/releases/1.2.5/.\n\nIn general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-17T17:41:07.056174","description":"It was discovered that Django did not properly validate HTTP requests that\ncontain an X-Requested-With header. An attacker could exploit this\nvulnerability to perform cross-site request forgery (CSRF) attacks.\n(CVE-2011-0696)\n\nIt was discovered that Django did not properly sanitize its input when\nperforming file uploads, resulting in cross-site scripting (XSS)\nvulnerabilities. With cross-site scripting vulnerabilities, if a user were\ntricked into viewing server output during a crafted server request, a\nremote attacker could exploit this to modify the contents, or steal\nconfidential data, within the same domain. (CVE-2011-0697)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"python-django","version":"1.1.1-2ubuntu1.3","description":"High-level Python web development framework","is_source":true},{"name":"python-django","version":"1.1.1-2ubuntu1.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python-django","version_link":"https://launchpad.net/ubuntu/+source/python-django/1.1.1-2ubuntu1.3"}],"maverick":[{"name":"python-django","version":"1.2.3-1ubuntu0.2.10.10.2","description":"High-level Python web development framework","is_source":true},{"name":"python-django","version":"1.2.3-1ubuntu0.2.10.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python-django","version_link":"https://launchpad.net/ubuntu/+source/python-django/1.2.3-1ubuntu0.2.10.10.2"}],"karmic":[{"name":"python-django","version":"1.1.1-1ubuntu1.2","description":"High-level Python web development framework","is_source":true},{"name":"python-django","version":"1.1.1-1ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/python-django","version_link":"https://launchpad.net/ubuntu/+source/python-django/1.1.1-1ubuntu1.2"}]},"type":"USN","cves_ids":["CVE-2011-0696","CVE-2011-0697"]}]}],"offset":71660,"limit":20,"total_results":79316}