{"cves":[{"id":"CVE-2011-0558","published":"2011-02-10T16:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nInteger overflow in Adobe Flash Player before 10.2.152.26 allows attackers\nto execute arbitrary code via a large array length value in the\nActionScript method of the Function class.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0558"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"10.2.152.27-0hardy1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.2.152.27-0karmic1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"10.2.152.27-0lucid1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"10.2.152.27-0maverick1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.2.152.27","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"10.2.152.27ubuntu0.8.04.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.2.152.27ubuntu0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"10.2.152.27ubuntu0.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"10.2.152.27ubuntu0.10.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.2.152.27","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0724","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe Live DVD for Edubuntu 9.10, 10.04 LTS, and 10.10 does not correctly\nregenerate iTALC private keys after installation, which causes each\ninstallation to have the same fixed key, which allows remote attackers to\ngain privileges.","ubuntu_description":"\nStéphane Graber discovered that the iTALC private keys shipped with the\nEdubuntu Live media were not correctly regenerated once Edubuntu was\ninstalled. If an iTALC client was installed with the vulnerable keys,\na remote attacker could gain control of the system.","notes":[],"codename":null,"priority":"high","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1061-1","https://www.cve.org/CVERecord?id=CVE-2011-0724"],"bugs":[""],"patches":{"italc":[]},"tags":{},"packages":[{"name":"italc","source":"https://ubuntu.com/security/cve?package=italc","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=italc","debian":"https://tracker.debian.org/pkg/italc","statuses":[{"release_codename":"dapper","status":"not-affected","description":"not installed on live media","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"not installed on live media","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1:1.0.9.1-0ubuntu16.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1:1.0.9.1-0ubuntu18.10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1:1.0.9.1-0ubuntu18.10.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"only on Edubuntu live media","component":null,"pocket":"security"}]}],"notices_ids":["USN-1061-1"],"notices":[{"id":"USN-1061-1","title":"iTALC vulnerability","summary":"Private keys for iTALC shipped on Live DVD\n","instructions":"After a standard system update, if you had originally installed from\nthe Edubuntu Live DVD and the bad keys were found, you will need to\nredistribute the newly generated public keys to your iTALC clients and\nrestart each session. For more details, see:\nhttps://wiki.ubuntu.com/iTalc/Keys\n","references":[],"published":"2011-02-11T01:27:02.737611","description":"Stéphane Graber discovered that the iTALC private keys shipped with the\nEdubuntu Live DVD were not correctly regenerated once Edubuntu was\ninstalled. If an iTALC client was installed with the vulnerable keys, a\nremote attacker could gain control of the system. Only systems using keys\nfrom the Edubuntu Live DVD were affected.\n","is_hidden":false,"release_packages":{"lucid":[{"name":"italc","version":"1:1.0.9.1-0ubuntu18.10.04.1","description":"Intelligent Teaching and Learning with Computers","is_source":true},{"name":"italc-client","version":"1:1.0.9.1-0ubuntu18.10.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/italc","version_link":"https://launchpad.net/ubuntu/+source/italc/1:1.0.9.1-0ubuntu18.10.04.1"}],"maverick":[{"name":"italc","version":"1:1.0.9.1-0ubuntu18.10.10.1","description":"Intelligent Teaching and Learning with Computers","is_source":true},{"name":"italc-client","version":"1:1.0.9.1-0ubuntu18.10.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/italc","version_link":"https://launchpad.net/ubuntu/+source/italc/1:1.0.9.1-0ubuntu18.10.10.1"}],"karmic":[{"name":"italc","version":"1:1.0.9.1-0ubuntu16.1","description":"Intelligent Teaching and Learning with Computers","is_source":true},{"name":"italc-client","version":"1:1.0.9.1-0ubuntu16.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/italc","version_link":"https://launchpad.net/ubuntu/+source/italc/1:1.0.9.1-0ubuntu16.1"}]},"type":"USN","cves_ids":["CVE-2011-0724"]}]},{"id":"CVE-2011-0543","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nCertain legacy functionality in fusermount in fuse 2.8.5 and earlier, when\nutil-linux does not support the --no-canonicalize option, allows local\nusers to bypass intended access restrictions and unmount arbitrary\ndirectories via a symlink attack.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1077-1","https://www.cve.org/CVERecord?id=CVE-2011-0543"],"bugs":[""],"patches":{"fuse":["upstream: http://fuse.git.sourceforge.net/git/gitweb.cgi?p=fuse/fuse;a=commit;h=2fcbc2a5a94983813c533c015134c6974f8ee636","upstream: http://fuse.git.sourceforge.net/git/gitweb.cgi?p=fuse/fuse;a=commit;h=cbd3a2a84068aae6e3fe32939d88470d712dbf47"]},"tags":{},"packages":[{"name":"fuse","source":"https://ubuntu.com/security/cve?package=fuse","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=fuse","debian":"https://tracker.debian.org/pkg/fuse","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.7.2-1ubuntu2.3","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"2.7.4-1.1ubuntu4.5","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.8.1-1.1ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.8.4-1ubuntu1.3","component":null,"pocket":"security"}]}],"notices_ids":["USN-1077-1"],"notices":[{"id":"USN-1077-1","title":"FUSE vulnerabilities","summary":"","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-28T18:09:55.421333","description":"It was discovered that FUSE would incorrectly follow symlinks when checking\nmountpoints under certain conditions. A local attacker, with access to use\nFUSE, could unmount arbitrary locations, leading to a denial of service.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"fuse","version":"2.7.2-1ubuntu2.3","description":"","is_source":true},{"name":"fuse-utils","version":"2.7.2-1ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.7.2-1ubuntu2.3"}],"lucid":[{"name":"fuse","version":"2.8.1-1.1ubuntu3.1","description":"","is_source":true},{"name":"fuse-utils","version":"2.8.1-1.1ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.8.1-1.1ubuntu3.1"}],"maverick":[{"name":"fuse","version":"2.8.4-1ubuntu1.3","description":"","is_source":true},{"name":"fuse-utils","version":"2.8.4-1ubuntu1.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.8.4-1ubuntu1.3"}],"karmic":[{"name":"fuse","version":"2.7.4-1.1ubuntu4.5","description":"","is_source":true},{"name":"fuse-utils","version":"2.7.4-1.1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.7.4-1.1ubuntu4.5"}]},"type":"USN","cves_ids":["CVE-2011-0541","CVE-2011-0542","CVE-2011-0543"]}]},{"id":"CVE-2011-0542","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nfusermount in fuse 2.8.5 and earlier does not perform a chdir to / before\nperforming a mount or umount, which allows local users to unmount arbitrary\ndirectories via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1077-1","https://www.cve.org/CVERecord?id=CVE-2011-0542"],"bugs":[""],"patches":{"fuse":["upstream: http://fuse.git.sourceforge.net/git/gitweb.cgi?p=fuse/fuse;a=commit;h=1e7607ff89c65b005f69e27aeb1649d624099873"]},"tags":{},"packages":[{"name":"fuse","source":"https://ubuntu.com/security/cve?package=fuse","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=fuse","debian":"https://tracker.debian.org/pkg/fuse","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.7.2-1ubuntu2.3","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"2.7.4-1.1ubuntu4.5","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.8.1-1.1ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.8.4-1ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1077-1"],"notices":[{"id":"USN-1077-1","title":"FUSE vulnerabilities","summary":"","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-28T18:09:55.421333","description":"It was discovered that FUSE would incorrectly follow symlinks when checking\nmountpoints under certain conditions. A local attacker, with access to use\nFUSE, could unmount arbitrary locations, leading to a denial of service.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"fuse","version":"2.7.2-1ubuntu2.3","description":"","is_source":true},{"name":"fuse-utils","version":"2.7.2-1ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.7.2-1ubuntu2.3"}],"lucid":[{"name":"fuse","version":"2.8.1-1.1ubuntu3.1","description":"","is_source":true},{"name":"fuse-utils","version":"2.8.1-1.1ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.8.1-1.1ubuntu3.1"}],"maverick":[{"name":"fuse","version":"2.8.4-1ubuntu1.3","description":"","is_source":true},{"name":"fuse-utils","version":"2.8.4-1ubuntu1.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.8.4-1ubuntu1.3"}],"karmic":[{"name":"fuse","version":"2.7.4-1.1ubuntu4.5","description":"","is_source":true},{"name":"fuse-utils","version":"2.7.4-1.1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.7.4-1.1ubuntu4.5"}]},"type":"USN","cves_ids":["CVE-2011-0541","CVE-2011-0542","CVE-2011-0543"]}]},{"id":"CVE-2011-0541","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nfuse 2.8.5 and earlier does not properly handle when /etc/mtab cannot be\nupdated, which allows local users to unmount arbitrary directories via a\nsymlink attack.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1077-1","https://www.cve.org/CVERecord?id=CVE-2011-0541"],"bugs":[""],"patches":{"fuse":["upstream: http://fuse.git.sourceforge.net/git/gitweb.cgi?p=fuse/fuse;a=commit;h=bf5ffb5fd8558bd799791834def431c0cee5a11f"]},"tags":{},"packages":[{"name":"fuse","source":"https://ubuntu.com/security/cve?package=fuse","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=fuse","debian":"https://tracker.debian.org/pkg/fuse","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.7.2-1ubuntu2.3","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"2.7.4-1.1ubuntu4.5","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.8.1-1.1ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.8.4-1ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1077-1"],"notices":[{"id":"USN-1077-1","title":"FUSE vulnerabilities","summary":"","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-28T18:09:55.421333","description":"It was discovered that FUSE would incorrectly follow symlinks when checking\nmountpoints under certain conditions. A local attacker, with access to use\nFUSE, could unmount arbitrary locations, leading to a denial of service.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"fuse","version":"2.7.2-1ubuntu2.3","description":"","is_source":true},{"name":"fuse-utils","version":"2.7.2-1ubuntu2.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.7.2-1ubuntu2.3"}],"lucid":[{"name":"fuse","version":"2.8.1-1.1ubuntu3.1","description":"","is_source":true},{"name":"fuse-utils","version":"2.8.1-1.1ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.8.1-1.1ubuntu3.1"}],"maverick":[{"name":"fuse","version":"2.8.4-1ubuntu1.3","description":"","is_source":true},{"name":"fuse-utils","version":"2.8.4-1ubuntu1.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.8.4-1ubuntu1.3"}],"karmic":[{"name":"fuse","version":"2.7.4-1.1ubuntu4.5","description":"","is_source":true},{"name":"fuse-utils","version":"2.7.4-1.1ubuntu4.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/fuse","version_link":"https://launchpad.net/ubuntu/+source/fuse/2.7.4-1.1ubuntu4.5"}]},"type":"USN","cves_ids":["CVE-2011-0541","CVE-2011-0542","CVE-2011-0543"]}]},{"id":"CVE-2011-0534","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nApache Tomcat 7.0.0 through 7.0.6 and 6.0.0 through 6.0.30 does not enforce\nthe maxHttpHeaderSize limit for requests involving the NIO HTTP connector,\nwhich allows remote attackers to cause a denial of service\n(OutOfMemoryError) via a crafted request.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://tomcat.apache.org/security-6.html","http://archives.neohapsis.com/archives/fulldisclosure/2011-02/0076.html","https://ubuntu.com/security/notices/USN-1097-1","https://www.cve.org/CVERecord?id=CVE-2011-0534"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/tomcat6/+bug/717396","https://bugs.edge.launchpad.net/ubuntu/natty/+source/tomcat6/+bug/714239","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=612257","https://issues.apache.org/bugzilla/show_bug.cgi?id=50631"],"patches":{"tomcat6":["upstream: http://svn.apache.org/viewvc?view=revision&revision=1066313"]},"tags":{},"packages":[{"name":"tomcat6","source":"https://ubuntu.com/security/cve?package=tomcat6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tomcat6","debian":"https://tracker.debian.org/pkg/tomcat6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.0.20-2ubuntu2.4","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.0.24-2ubuntu1.7","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.0.28-2ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1097-1"],"notices":[{"id":"USN-1097-1","title":"Tomcat vulnerabilities","summary":"An attacker could send crafted input to Tomcat and cause it to crash or\nread and write arbitrary files.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-03-29T17:12:24.576580","description":"It was discovered that the Tomcat SecurityManager did not properly restrict\nthe working directory. An attacker could use this flaw to read or write\nfiles outside of the intended working directory. (CVE-2010-3718)\n\nIt was discovered that Tomcat did not properly escape certain parameters in\nthe Manager application which could result in browsers becoming vulnerable\nto cross-site scripting attacks when processing the output. With cross-site\nscripting vulnerabilities, if a user were tricked into viewing server\noutput during a crafted server request, a remote attacker could exploit\nthis to modify the contents, or steal confidential data (such as\npasswords), within the same domain. (CVE-2011-0013)\n\nIt was discovered that Tomcat incorrectly enforced the maxHttpHeaderSize\nlimit in certain configurations. A remote attacker could use this flaw to\ncause Tomcat to consume all available memory, resulting in a denial of\nservice. (CVE-2011-0534)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"tomcat6","version":"6.0.24-2ubuntu1.7","description":"Servlet and JSP engine","is_source":true},{"name":"libtomcat6-java","version":"6.0.24-2ubuntu1.7","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.24-2ubuntu1.7"},{"name":"tomcat6-admin","version":"6.0.24-2ubuntu1.7","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.24-2ubuntu1.7"}],"maverick":[{"name":"tomcat6","version":"6.0.28-2ubuntu1.2","description":"Servlet and JSP engine","is_source":true},{"name":"libtomcat6-java","version":"6.0.28-2ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.28-2ubuntu1.2"},{"name":"tomcat6-admin","version":"6.0.28-2ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.28-2ubuntu1.2"}],"karmic":[{"name":"tomcat6","version":"6.0.20-2ubuntu2.4","description":"Servlet and JSP engine","is_source":true},{"name":"libtomcat6-java","version":"6.0.20-2ubuntu2.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.20-2ubuntu2.4"},{"name":"tomcat6-admin","version":"6.0.20-2ubuntu2.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.20-2ubuntu2.4"}]},"type":"USN","cves_ids":["CVE-2010-3718","CVE-2011-0534","CVE-2011-0013"]}]},{"id":"CVE-2011-0282","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x\nthrough 1.9, when an LDAP backend is used, allows remote attackers to cause\na denial of service (NULL pointer dereference or buffer over-read, and\ndaemon crash) via a crafted principal name.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1062-1","https://www.cve.org/CVERecord?id=CVE-2011-0282"],"bugs":[""],"patches":{"krb5":[]},"tags":{},"packages":[{"name":"krb5","source":"https://ubuntu.com/security/cve?package=krb5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=krb5","debian":"https://tracker.debian.org/pkg/krb5","statuses":[{"release_codename":"dapper","status":"not-affected","description":"no LDAP backend","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1.6.dfsg.3~beta1-2ubuntu1.8","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.7dfsg~beta3-1ubuntu0.9","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.8.1+dfsg-2ubuntu0.6","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.8.1+dfsg-5ubuntu0.4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1062-1"],"notices":[{"id":"USN-1062-1","title":"Kerberos vulnerabilities","summary":"","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-15T00:59:48.852961","description":"Keiichi Mori discovered that the MIT krb5 KDC database propagation\ndaemon (kpropd) is vulnerable to a denial of service attack due\nto improper logic when a worker child process exited because\nof invalid network input. This could only occur when kpropd is\nrunning in standalone mode; kpropd was not affected when running in\nincremental propagation mode (\"iprop\") or as an inetd server. This\nissue only affects Ubuntu 9.10, Ubuntu 10.04 LTS, and Ubuntu\n10.10. (CVE-2010-4022)\n\nKevin Longfellow and others discovered that the MIT krb5 Key\nDistribution Center (KDC) daemon is vulnerable to denial of service\nattacks when using an LDAP back end due to improper handling of\nnetwork input. (CVE-2011-0281, CVE-2011-0282)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"krb5","version":"1.6.dfsg.3~beta1-2ubuntu1.8","description":"","is_source":true},{"name":"krb5-kdc","version":"1.6.dfsg.3~beta1-2ubuntu1.8","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.6.dfsg.3~beta1-2ubuntu1.8"}],"lucid":[{"name":"krb5","version":"1.8.1+dfsg-2ubuntu0.6","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.8.1+dfsg-2ubuntu0.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-2ubuntu0.6"},{"name":"krb5-kdc","version":"1.8.1+dfsg-2ubuntu0.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-2ubuntu0.6"}],"maverick":[{"name":"krb5","version":"1.8.1+dfsg-5ubuntu0.4","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.8.1+dfsg-5ubuntu0.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-5ubuntu0.4"},{"name":"krb5-kdc","version":"1.8.1+dfsg-5ubuntu0.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-5ubuntu0.4"}],"karmic":[{"name":"krb5","version":"1.7dfsg~beta3-1ubuntu0.9","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.7dfsg~beta3-1ubuntu0.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.7dfsg~beta3-1ubuntu0.9"},{"name":"krb5-kdc","version":"1.7dfsg~beta3-1ubuntu0.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.7dfsg~beta3-1ubuntu0.9"}]},"type":"USN","cves_ids":["CVE-2010-4022","CVE-2011-0281","CVE-2011-0282"]}]},{"id":"CVE-2011-0281","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe unparse implementation in the Key Distribution Center (KDC) in MIT\nKerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used,\nallows remote attackers to cause a denial of service (file descriptor\nexhaustion and daemon hang) via a principal name that triggers use of a\nbackslash escape sequence, as demonstrated by a \\n sequence.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1062-1","https://www.cve.org/CVERecord?id=CVE-2011-0281"],"bugs":[""],"patches":{"krb5":[]},"tags":{},"packages":[{"name":"krb5","source":"https://ubuntu.com/security/cve?package=krb5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=krb5","debian":"https://tracker.debian.org/pkg/krb5","statuses":[{"release_codename":"dapper","status":"not-affected","description":"no LDAP backend","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1.6.dfsg.3~beta1-2ubuntu1.8","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.7dfsg~beta3-1ubuntu0.9","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.8.1+dfsg-2ubuntu0.6","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.8.1+dfsg-5ubuntu0.4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1062-1"],"notices":[{"id":"USN-1062-1","title":"Kerberos vulnerabilities","summary":"","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-15T00:59:48.852961","description":"Keiichi Mori discovered that the MIT krb5 KDC database propagation\ndaemon (kpropd) is vulnerable to a denial of service attack due\nto improper logic when a worker child process exited because\nof invalid network input. This could only occur when kpropd is\nrunning in standalone mode; kpropd was not affected when running in\nincremental propagation mode (\"iprop\") or as an inetd server. This\nissue only affects Ubuntu 9.10, Ubuntu 10.04 LTS, and Ubuntu\n10.10. (CVE-2010-4022)\n\nKevin Longfellow and others discovered that the MIT krb5 Key\nDistribution Center (KDC) daemon is vulnerable to denial of service\nattacks when using an LDAP back end due to improper handling of\nnetwork input. (CVE-2011-0281, CVE-2011-0282)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"krb5","version":"1.6.dfsg.3~beta1-2ubuntu1.8","description":"","is_source":true},{"name":"krb5-kdc","version":"1.6.dfsg.3~beta1-2ubuntu1.8","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.6.dfsg.3~beta1-2ubuntu1.8"}],"lucid":[{"name":"krb5","version":"1.8.1+dfsg-2ubuntu0.6","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.8.1+dfsg-2ubuntu0.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-2ubuntu0.6"},{"name":"krb5-kdc","version":"1.8.1+dfsg-2ubuntu0.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-2ubuntu0.6"}],"maverick":[{"name":"krb5","version":"1.8.1+dfsg-5ubuntu0.4","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.8.1+dfsg-5ubuntu0.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-5ubuntu0.4"},{"name":"krb5-kdc","version":"1.8.1+dfsg-5ubuntu0.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-5ubuntu0.4"}],"karmic":[{"name":"krb5","version":"1.7dfsg~beta3-1ubuntu0.9","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.7dfsg~beta3-1ubuntu0.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.7dfsg~beta3-1ubuntu0.9"},{"name":"krb5-kdc","version":"1.7dfsg~beta3-1ubuntu0.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.7dfsg~beta3-1ubuntu0.9"}]},"type":"USN","cves_ids":["CVE-2010-4022","CVE-2011-0281","CVE-2011-0282"]}]},{"id":"CVE-2010-4022","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe do_standalone function in the MIT krb5 KDC database propagation daemon\n(kpropd) in Kerberos 1.7, 1.8, and 1.9, when running in standalone mode,\ndoes not properly handle when a worker child process \"exits abnormally,\"\nwhich allows remote attackers to cause a denial of service (listening\nprocess termination, no new connections, and lack of updates in slave KVC)\nvia unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-1062-1","https://www.cve.org/CVERecord?id=CVE-2010-4022"],"bugs":[""],"patches":{"krb5":[]},"tags":{},"packages":[{"name":"krb5","source":"https://ubuntu.com/security/cve?package=krb5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=krb5","debian":"https://tracker.debian.org/pkg/krb5","statuses":[{"release_codename":"dapper","status":"not-affected","description":"1.7 and newer","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.7 and newer","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.7dfsg~beta3-1ubuntu0.9","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.8.1+dfsg-2ubuntu0.6","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.8.1+dfsg-5ubuntu0.4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-1062-1"],"notices":[{"id":"USN-1062-1","title":"Kerberos vulnerabilities","summary":"","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-02-15T00:59:48.852961","description":"Keiichi Mori discovered that the MIT krb5 KDC database propagation\ndaemon (kpropd) is vulnerable to a denial of service attack due\nto improper logic when a worker child process exited because\nof invalid network input. This could only occur when kpropd is\nrunning in standalone mode; kpropd was not affected when running in\nincremental propagation mode (\"iprop\") or as an inetd server. This\nissue only affects Ubuntu 9.10, Ubuntu 10.04 LTS, and Ubuntu\n10.10. (CVE-2010-4022)\n\nKevin Longfellow and others discovered that the MIT krb5 Key\nDistribution Center (KDC) daemon is vulnerable to denial of service\nattacks when using an LDAP back end due to improper handling of\nnetwork input. (CVE-2011-0281, CVE-2011-0282)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"krb5","version":"1.6.dfsg.3~beta1-2ubuntu1.8","description":"","is_source":true},{"name":"krb5-kdc","version":"1.6.dfsg.3~beta1-2ubuntu1.8","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.6.dfsg.3~beta1-2ubuntu1.8"}],"lucid":[{"name":"krb5","version":"1.8.1+dfsg-2ubuntu0.6","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.8.1+dfsg-2ubuntu0.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-2ubuntu0.6"},{"name":"krb5-kdc","version":"1.8.1+dfsg-2ubuntu0.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-2ubuntu0.6"}],"maverick":[{"name":"krb5","version":"1.8.1+dfsg-5ubuntu0.4","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.8.1+dfsg-5ubuntu0.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-5ubuntu0.4"},{"name":"krb5-kdc","version":"1.8.1+dfsg-5ubuntu0.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.8.1+dfsg-5ubuntu0.4"}],"karmic":[{"name":"krb5","version":"1.7dfsg~beta3-1ubuntu0.9","description":"","is_source":true},{"name":"krb5-kdc-ldap","version":"1.7dfsg~beta3-1ubuntu0.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.7dfsg~beta3-1ubuntu0.9"},{"name":"krb5-kdc","version":"1.7dfsg~beta3-1ubuntu0.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/krb5","version_link":"https://launchpad.net/ubuntu/+source/krb5/1.7dfsg~beta3-1ubuntu0.9"}]},"type":"USN","cves_ids":["CVE-2010-4022","CVE-2011-0281","CVE-2011-0282"]}]},{"id":"CVE-2010-3718","published":"2011-02-10T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nApache Tomcat 7.0.0 through 7.0.3, 6.0.x, and 5.5.x, when running within a\nSecurityManager, does not make the ServletContext attribute read-only,\nwhich allows local web applications to read or write files outside of the\nintended working directory, as demonstrated using a directory traversal\nattack.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://tomcat.apache.org/security-6.html","http://tomcat.apache.org/security-5.html","http://archives.neohapsis.com/archives/fulldisclosure/2011-02/0074.html","https://ubuntu.com/security/notices/USN-1097-1","https://www.cve.org/CVERecord?id=CVE-2010-3718"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/tomcat6/+bug/717396","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=612257"],"patches":{"tomcat6":["upstream: http://svn.apache.org/viewvc?view=revision&revision=1022560"],"tomcat5.5":["upstream: http://svn.apache.org/viewvc?view=revision&revision=1027610"]},"tags":{"tomcat5.5":["universe-binary"]},"packages":[{"name":"tomcat5.5","source":"https://ubuntu.com/security/cve?package=tomcat5.5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tomcat5.5","debian":"https://tracker.debian.org/pkg/tomcat5.5","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"tomcat6","source":"https://ubuntu.com/security/cve?package=tomcat6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tomcat6","debian":"https://tracker.debian.org/pkg/tomcat6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.0.20-2ubuntu2.4","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.0.24-2ubuntu1.7","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.0.28-2ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"6.0.28-10","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.0.28-10","component":null,"pocket":"security"}]}],"notices_ids":["USN-1097-1"],"notices":[{"id":"USN-1097-1","title":"Tomcat vulnerabilities","summary":"An attacker could send crafted input to Tomcat and cause it to crash or\nread and write arbitrary files.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-03-29T17:12:24.576580","description":"It was discovered that the Tomcat SecurityManager did not properly restrict\nthe working directory. An attacker could use this flaw to read or write\nfiles outside of the intended working directory. (CVE-2010-3718)\n\nIt was discovered that Tomcat did not properly escape certain parameters in\nthe Manager application which could result in browsers becoming vulnerable\nto cross-site scripting attacks when processing the output. With cross-site\nscripting vulnerabilities, if a user were tricked into viewing server\noutput during a crafted server request, a remote attacker could exploit\nthis to modify the contents, or steal confidential data (such as\npasswords), within the same domain. (CVE-2011-0013)\n\nIt was discovered that Tomcat incorrectly enforced the maxHttpHeaderSize\nlimit in certain configurations. A remote attacker could use this flaw to\ncause Tomcat to consume all available memory, resulting in a denial of\nservice. (CVE-2011-0534)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"tomcat6","version":"6.0.24-2ubuntu1.7","description":"Servlet and JSP engine","is_source":true},{"name":"libtomcat6-java","version":"6.0.24-2ubuntu1.7","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.24-2ubuntu1.7"},{"name":"tomcat6-admin","version":"6.0.24-2ubuntu1.7","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.24-2ubuntu1.7"}],"maverick":[{"name":"tomcat6","version":"6.0.28-2ubuntu1.2","description":"Servlet and JSP engine","is_source":true},{"name":"libtomcat6-java","version":"6.0.28-2ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.28-2ubuntu1.2"},{"name":"tomcat6-admin","version":"6.0.28-2ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.28-2ubuntu1.2"}],"karmic":[{"name":"tomcat6","version":"6.0.20-2ubuntu2.4","description":"Servlet and JSP engine","is_source":true},{"name":"libtomcat6-java","version":"6.0.20-2ubuntu2.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.20-2ubuntu2.4"},{"name":"tomcat6-admin","version":"6.0.20-2ubuntu2.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.20-2ubuntu2.4"}]},"type":"USN","cves_ids":["CVE-2010-3718","CVE-2011-0534","CVE-2011-0013"]}]},{"id":"CVE-2011-0014","published":"2011-02-09T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nssl/t1_lib.c in OpenSSL 0.9.8h through 0.9.8q and 1.0.0 through 1.0.0c\nallows remote attackers to cause a denial of service (crash), and possibly\nobtain sensitive information in applications that use OpenSSL, via a\nmalformed ClientHello handshake message that triggers an out-of-bounds\nmemory access, aka \"OCSP stapling vulnerability.\"","ubuntu_description":"","notes":[{"author":"sbeattie","note":"code/OCSP option is not present in karmic and earlier"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openssl.org/news/secadv_20110208.txt","https://ubuntu.com/security/notices/USN-1064-1","https://www.cve.org/CVERecord?id=CVE-2011-0014"],"bugs":["https://bugs.edge.launchpad.net/ubuntu/+source/openssl/+bug/718208"],"patches":{"openssl":[]},"tags":{},"packages":[{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"0.9.8k-7ubuntu8.6","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"0.9.8o-1ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.0.0d,0.9.8r","component":null,"pocket":"security"}]}],"notices_ids":["USN-1064-1"],"notices":[{"id":"USN-1064-1","title":"OpenSSL vulnerability","summary":"","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2011-02-15T20:53:25.651295","description":"Neel Mehta discovered that incorrectly formatted ClientHello handshake\nmessages could cause OpenSSL to parse past the end of the message.\nThis could allow a remote attacker to cause a crash and denial of\nservice by triggering invalid memory accesses.\n","is_hidden":false,"release_packages":{"lucid":[{"name":"openssl","version":"0.9.8k-7ubuntu8.6","description":"","is_source":true},{"name":"libssl0.9.8","version":"0.9.8k-7ubuntu8.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8k-7ubuntu8.6"}],"maverick":[{"name":"openssl","version":"0.9.8o-1ubuntu4.4","description":"","is_source":true},{"name":"libssl0.9.8","version":"0.9.8o-1ubuntu4.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8o-1ubuntu4.4"}]},"type":"USN","cves_ids":["CVE-2011-0014"]}]},{"id":"CVE-2011-0538","published":"2011-02-08T22:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nWireshark 1.2.0 through 1.2.14, 1.4.0 through 1.4.3, and 1.5.0 frees an\nuninitialized pointer during processing of a .pcap file in the pcap-ng\nformat, which allows remote attackers to cause a denial of service (memory\ncorruption) or possibly have unspecified other impact via a malformed file.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0538"],"bugs":["https://launchpad.net/bugs/730413","https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5652"],"patches":{"wireshark":["upstream: http://anonsvn.wireshark.org/viewvc?view=revision&revision=35793"]},"tags":{},"packages":[{"name":"wireshark","source":"https://ubuntu.com/security/cve?package=wireshark","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wireshark","debian":"https://tracker.debian.org/pkg/wireshark","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.2.11-6+squeeze1build0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.4.4-1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"1.4.4-1","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"1.4.4-1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"1.4.4-1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"1.4.4-1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"1.4.4-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.4.4-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0901","published":"2011-02-07T21:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple stack-based buffer overflows in the tsc_launch_remote function\n(src/support.c) in Terminal Server Client (tsclient) 0.150, and possibly\nother versions, allow user-assisted remote attackers to execute arbitrary\ncode via a .RDP file with a long (1) username, (2) password, or (3) domain\nargument. NOTE: the provenance of this information is unknown; the details\nare obtained solely from third party information.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"likely similar to stack overflow in CVE-2011-0900"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0901"],"bugs":[""],"patches":{"tsclient":[]},"tags":{"tsclient":["stack-protector"]},"packages":[{"name":"tsclient","source":"https://ubuntu.com/security/cve?package=tsclient","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tsclient","debian":"https://tracker.debian.org/pkg/tsclient","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0900","published":"2011-02-07T21:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nStack-based buffer overflow in the tsc_launch_remote function\n(src/support.c) in Terminal Server Client (tsclient) 0.150, and possibly\nother versions, allows user-assisted remote attackers to execute arbitrary\ncode via a .RDP file with a long hostname argument.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"should be protected by stack-protector (investigate)\nno patch from upstream sbversion as of 2011-02-08\n(http://tsclient.svn.sourceforge.net/viewvc/tsclient/)"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.exploit-db.com/exploits/16095/","https://www.cve.org/CVERecord?id=CVE-2011-0900"],"bugs":[""],"patches":{"tsclient":[]},"tags":{"tsclient":["stack-protector"]},"packages":[{"name":"tsclient","source":"https://ubuntu.com/security/cve?package=tsclient","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tsclient","debian":"https://tracker.debian.org/pkg/tsclient","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0531","published":"2011-02-07T21:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\ndemux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player\n1.1.6.1 and earlier allows remote attackers to cause a denial of service\n(crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska)\nfile that triggers memory corruption, related to \"class mismatching\" and\nthe MKV_IS_ID macro.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0531"],"bugs":[""],"patches":{"vlc":["other: http://git.videolan.org/?p=vlc.git;a=commit;h=59491dcedffbf97612d2c572943b56ee4289dd07","debdiff: https://bugs.launchpad.net/ubuntu/+source/vlc/+bug/714089"]},"tags":{},"packages":[{"name":"vlc","source":"https://ubuntu.com/security/cve?package=vlc","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=vlc","debian":"https://tracker.debian.org/pkg/vlc","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.0.6-1ubuntu1.5","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.1.4-1ubuntu1.4","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.1.7-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.1.7-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0522","published":"2011-02-07T21:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe StripTags function in (1) the USF decoder\n(modules/codec/subtitles/subsdec.c) and (2) the Text decoder\n(modules/codec/subtitles/subsusf.c) in VideoLAN VLC Media Player 1.1 before\n1.1.6-rc allows remote attackers to execute arbitrary code via a subtitle\nwith an opening \"<\" without a closing \">\" in an MKV file, which triggers\nheap memory corruption, as demonstrated using\nrefined-australia-blu720p-sample.mkv.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://mailman.videolan.org/pipermail/vlc-devel/2011-January/078607.html","https://www.cve.org/CVERecord?id=CVE-2011-0522"],"bugs":[""],"patches":{"vlc":["upstream: http://git.videolan.org/gitweb.cgi?p=vlc/vlc-1.1.git;a=commit;h=dc14617f39c03bbe80c3cc4f92799dca840966eb"]},"tags":{},"packages":[{"name":"vlc","source":"https://ubuntu.com/security/cve?package=vlc","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=vlc","debian":"https://tracker.debian.org/pkg/vlc","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1.0.6-1ubuntu1.4","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1.1.4-1ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.1.6-1ubuntu1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0784","published":"2011-02-04T18:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nRace condition in Google Chrome before 9.0.597.84 allows remote attackers\nto execute arbitrary code via vectors related to audio.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0784"],"bugs":[""],"patches":{"chromium-browser":[]},"tags":{},"packages":[{"name":"chromium-browser","source":"https://ubuntu.com/security/cve?package=chromium-browser","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=chromium-browser","debian":"https://tracker.debian.org/pkg/chromium-browser","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"14.0.835.202~r103287-0ubuntu0.10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"14.0.835.202~r103287-0ubuntu0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"9.0.597.107~r75357-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"9.0.597.107~r75357-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.0.597.84","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0783","published":"2011-02-04T18:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in Google Chrome before 9.0.597.84 allows\nuser-assisted remote attackers to cause a denial of service (application\ncrash) via vectors involving a \"bad volume setting.\"","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0783"],"bugs":[""],"patches":{"chromium-browser":[]},"tags":{},"packages":[{"name":"chromium-browser","source":"https://ubuntu.com/security/cve?package=chromium-browser","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=chromium-browser","debian":"https://tracker.debian.org/pkg/chromium-browser","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"14.0.835.202~r103287-0ubuntu0.10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"14.0.835.202~r103287-0ubuntu0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"9.0.597.107~r75357-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"9.0.597.107~r75357-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.0.597.84","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0782","published":"2011-02-04T18:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nGoogle Chrome before 9.0.597.84 on Mac OS X does not properly mitigate an\nunspecified flaw in the Mac OS X 10.5 SSL libraries, which allows remote\nattackers to cause a denial of service (application crash) via unknown\nvectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0782"],"bugs":[""],"patches":{"chromium-browser":[]},"tags":{},"packages":[{"name":"chromium-browser","source":"https://ubuntu.com/security/cve?package=chromium-browser","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=chromium-browser","debian":"https://tracker.debian.org/pkg/chromium-browser","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"OSX only","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"OSX only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.0.597.84","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2011-0781","published":"2011-02-04T18:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nGoogle Chrome before 9.0.597.84 does not properly handle autofill profile\nmerging, which has unspecified impact and remote attack vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2011-0781"],"bugs":[""],"patches":{"chromium-browser":[]},"tags":{},"packages":[{"name":"chromium-browser","source":"https://ubuntu.com/security/cve?package=chromium-browser","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=chromium-browser","debian":"https://tracker.debian.org/pkg/chromium-browser","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"14.0.835.202~r103287-0ubuntu0.10.04.2","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"14.0.835.202~r103287-0ubuntu0.10.10.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"9.0.597.107~r75357-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"9.0.597.107~r75357-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.0.597.84","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":71700,"limit":20,"total_results":79316}