{"cves":[{"id":"CVE-2009-3728","published":"2009-11-09T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nDirectory traversal vulnerability in the ICC_Profile.getInstance method in\nJava Runtime Environment (JRE) in Sun Java SE 5.0 before Update 22 and 6\nbefore Update 17, and OpenJDK, allows remote attackers to determine the\nexistence of local International Color Consortium (ICC) profile files via a\n.. (dot dot) in a pathname, aka Bug Id 6631533.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-859-1","https://www.cve.org/CVERecord?id=CVE-2009-3728"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu12","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b17","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":["USN-859-1"],"notices":[{"id":"USN-859-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-11-12T22:06:57.164261","description":"Dan Kaminsky discovered that SSL certificates signed with MD2 could be\nspoofed given enough time. As a result, an attacker could potentially\ncreate a malicious trusted certificate to impersonate another site. This\nupdate handles this issue by completely disabling MD2 for certificate\nvalidation in OpenJDK. (CVE-2009-2409)\n\nIt was discovered that ICC profiles could be identified with\n\"..\" pathnames. If a user were tricked into running a specially\ncrafted applet, a remote attacker could gain information about a local\nsystem. (CVE-2009-3728)\n\nPeter Vreugdenhil discovered multiple flaws in the processing of graphics\nin the AWT library. If a user were tricked into running a specially\ncrafted applet, a remote attacker could crash the application or run\narbitrary code with user privileges. (CVE-2009-3869, CVE-2009-3871)\n\nMultiple flaws were discovered in JPEG and BMP image handling. If a user\nwere tricked into loading a specially crafted image, a remote attacker\ncould crash the application or run arbitrary code with user privileges.\n(CVE-2009-3873, CVE-2009-3874, CVE-2009-3885)\n\nCoda Hale discovered that HMAC-based signatures were not correctly\nvalidated. Remote attackers could bypass certain forms of authentication,\ngranting unexpected access. (CVE-2009-3875)\n\nMultiple flaws were discovered in ASN.1 parsing. A remote attacker\ncould send a specially crafted HTTP stream that would exhaust system\nmemory and lead to a denial of service. (CVE-2009-3876, CVE-2009-3877)\n\nIt was discovered that the graphics configuration subsystem did\nnot correctly handle arrays. If a user were tricked into running\na specially crafted applet, a remote attacker could exploit this\nto crash the application or execute arbitrary code with user\nprivileges. (CVE-2009-3879)\n\nIt was discovered that loggers and Swing did not correctly handle\ncertain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2009-3880, CVE-2009-3882,\nCVE-2009-3883)\n\nIt was discovered that the ClassLoader did not correctly handle certain\noptions. If a user were tricked into running a specially crafted\napplet, a remote attacker could execute arbitrary code with user\nprivileges. (CVE-2009-3881)\n\nIt was discovered that time zone file loading could be used to determine\nthe existence of files on the local system. If a user were tricked into\nrunning a specially crafted applet, private information could be leaked\nto a remote attacker, leading to a loss of privacy. (CVE-2009-3884)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.6","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu12","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"}]},"type":"USN","cves_ids":["CVE-2009-3728","CVE-2009-3883","CVE-2009-3884","CVE-2009-3877","CVE-2009-3880","CVE-2009-3881","CVE-2009-3879","CVE-2009-3874","CVE-2009-3871","CVE-2009-3873","CVE-2009-3876","CVE-2009-3882","CVE-2009-3885","CVE-2009-3875","CVE-2009-3869","CVE-2009-2409"]}]},{"id":"CVE-2009-3726","published":"2009-11-09T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe nfs4_proc_lock function in fs/nfs/nfs4proc.c in the NFSv4 client in the\nLinux kernel before 2.6.31-rc4 allows remote NFS servers to cause a denial\nof service (NULL pointer dereference and panic) by sending a certain\nresponse containing incorrect file attributes, which trigger attempted use\nof an open file that lacks NFSv4 state.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-864-1","https://www.cve.org/CVERecord?id=CVE-2009-3726"],"bugs":[""],"patches":{"linux-source-2.6.15":[],"linux":[]},"tags":{},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.6.24-26.64","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.6.27-16.44","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.6.28-17.58","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.31","component":null,"pocket":"security"}]},{"name":"linux-source-2.6.15","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.15","debian":"https://tracker.debian.org/pkg/linux-source-2.6.15","statuses":[{"release_codename":"dapper","status":"released","description":"2.6.15-55.81","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-864-1"],"notices":[{"id":"USN-864-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"After a standard system upgrade you need to reboot your computer to\neffect the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change (except for Ubuntu 6.06)\nthe kernel updates have been given a new version number, which requires\nyou to recompile and reinstall all third party kernel modules you\nmight have installed. If you use linux-restricted-modules, you have to\nupdate that package as well to get modules which work with the new kernel\nversion. Unless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-server, linux-powerpc), a standard system\nupgrade will automatically perform this as well.\n","references":[],"published":"2009-12-05T01:52:13.000003","description":"It was discovered that the AX.25 network subsystem did not correctly\ncheck integer signedness in certain setsockopt calls. A local attacker\ncould exploit this to crash the system, leading to a denial of service.\nUbuntu 9.10 was not affected. (CVE-2009-2909)\n\nJan Beulich discovered that the kernel could leak register contents to\n32-bit processes that were switched to 64-bit mode. A local attacker\ncould run a specially crafted binary to read register values from an\nearlier process, leading to a loss of privacy. (CVE-2009-2910)\n\nDave Jones discovered that the gdth SCSI driver did not correctly validate\narray indexes in certain ioctl calls. A local attacker could exploit\nthis to crash the system or gain elevated privileges. (CVE-2009-3080)\n\nEric Dumazet and Jiri Pirko discovered that the TC and CLS subsystems\nwould leak kernel memory via uninitialized structure members. A local\nattacker could exploit this to read several bytes of kernel memory,\nleading to a loss of privacy. (CVE-2009-3228, CVE-2009-3612)\n\nEarl Chew discovered race conditions in pipe handling. A local attacker\ncould exploit anonymous pipes via /proc/*/fd/ and crash the system or\ngain root privileges. (CVE-2009-3547)\n\nDave Jones and Francois Romieu discovered that the r8169 network driver\ncould be made to leak kernel memory. A remote attacker could send a large\nnumber of jumbo frames until the system memory was exhausted, leading\nto a denial of service. Ubuntu 9.10 was not affected. (CVE-2009-3613).\n\nBen Hutchings discovered that the ATI Rage 128 video driver did not\ncorrectly validate initialization states. A local attacker could\nmake specially crafted ioctl calls to crash the system or gain root\nprivileges. (CVE-2009-3620)\n\nTomoki Sekiyama discovered that Unix sockets did not correctly verify\nnamespaces. A local attacker could exploit this to cause a system hang,\nleading to a denial of service. (CVE-2009-3621)\n\nJ. Bruce Fields discovered that NFSv4 did not correctly use the credential\ncache. A local attacker using a mount with AUTH_NULL authentication\ncould exploit this to crash the system or gain root privileges. Only\nUbuntu 9.10 was affected. (CVE-2009-3623)\n\nAlexander Zangerl discovered that the kernel keyring did not correctly\nreference count. A local attacker could issue a series of specially\ncrafted keyring calls to crash the system or gain root privileges.\nOnly Ubuntu 9.10 was affected. (CVE-2009-3624)\n\nDavid Wagner discovered that KVM did not correctly bounds-check CPUID\nentries. A local attacker could exploit this to crash the system\nor possibly gain elevated privileges. Ubuntu 6.06 and 9.10 were not\naffected. (CVE-2009-3638)\n\nAvi Kivity discovered that KVM did not correctly check privileges when\naccessing debug registers. A local attacker could exploit this to\ncrash a host system from within a guest system, leading to a denial of\nservice. Ubuntu 6.06 and 9.10 were not affected. (CVE-2009-3722)\n\nPhilip Reisner discovered that the connector layer for uvesafb, pohmelfs,\ndst, and dm did not correctly check capabilties. A local attacker could\nexploit this to crash the system or gain elevated privileges. Ubuntu\n6.06 was not affected. (CVE-2009-3725)\n\nTrond Myklebust discovered that NFSv4 clients did not robustly\nverify attributes. A malicious remote NFSv4 server could exploit\nthis to crash a client or gain root privileges. Ubuntu 9.10 was not\naffected. (CVE-2009-3726)\n\nRobin Getz discovered that NOMMU systems did not correctly validate\nNULL pointers in do_mmap_pgoff calls. A local attacker could attempt to\nallocate large amounts of memory to crash the system, leading to a denial\nof service. Only Ubuntu 6.06 and 9.10 were affected. (CVE-2009-3888)\n\nJoseph Malicki discovered that the MegaRAID SAS driver had\nworld-writable option files. A local attacker could exploit these\nto disrupt the behavior of the controller, leading to a denial of\nservice. (CVE-2009-3889, CVE-2009-3939)\n\nRoel Kluin discovered that the Hisax ISDN driver did not correctly\ncheck the size of packets. A remote attacker could send specially\ncrafted packets to cause a system crash, leading to a denial of\nservice. (CVE-2009-4005)\n\nLennert Buytenhek discovered that certain 802.11 states were not handled\ncorrectly. A physically-proximate remote attacker could send specially\ncrafted wireless traffic that would crash the system, leading to a denial\nof service. Only Ubuntu 9.10 was affected. (CVE-2009-4026, CVE-2009-4027)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"linux","version":"2.6.24-26.64","description":"","is_source":true},{"name":"linux-image-2.6.24-26-mckinley","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-generic","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-hppa32","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-386","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-sparc64-smp","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-openvz","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-powerpc","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-itanium","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-lpiacompat","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-xen","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-lpia","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"usb-modules-2.6.24-26-sparc64-di","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-powerpc-smp","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-virtual","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-rt","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-server","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-powerpc64-smp","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-hppa64","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-sparc64","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"}],"dapper":[{"name":"linux-source-2.6.15","version":"2.6.15-55.81","description":"","is_source":true},{"name":"linux-image-2.6.15-55-hppa64","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-mckinley","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-powerpc-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-hppa32-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-686","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-amd64-k8","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-amd64-server","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-386","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-sparc64-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-k7","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-sparc64","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-server","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-powerpc64-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-hppa32","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-mckinley-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-server-bigiron","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-itanium-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-amd64-xeon","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-powerpc","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-amd64-generic","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-hppa64-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-itanium","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"}],"intrepid":[{"name":"linux","version":"2.6.27-16.44","description":"","is_source":true},{"name":"linux-image-2.6.27-16-virtual","version":"2.6.27-16.44","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-16.44"},{"name":"linux-image-2.6.27-16-server","version":"2.6.27-16.44","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-16.44"},{"name":"linux-image-2.6.27-16-generic","version":"2.6.27-16.44","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-16.44"}],"jaunty":[{"name":"linux","version":"2.6.28-17.58","description":"","is_source":true},{"name":"linux-image-2.6.28-17-imx51","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-virtual","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-server","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-versatile","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-iop32x","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-generic","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-ixp4xx","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-lpia","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"}],"karmic":[{"name":"linux","version":"2.6.31-16.52","description":"","is_source":true},{"name":"linux-image-2.6.31-16-powerpc-smp","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-server","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-powerpc64-smp","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-lpia","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-386","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-generic-pae","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-sparc64-smp","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-virtual","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-sparc64","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-ia64","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-generic","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-powerpc","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"}]},"type":"USN","cves_ids":["CVE-2009-3726","CVE-2009-4027","CVE-2009-3624","CVE-2009-3612","CVE-2009-3547","CVE-2009-3613","CVE-2009-3725","CVE-2009-3620","CVE-2009-3623","CVE-2009-3888","CVE-2009-3889","CVE-2009-3939","CVE-2009-4005","CVE-2009-3621","CVE-2009-2910","CVE-2009-4026","CVE-2009-3228","CVE-2009-3080","CVE-2009-2909","CVE-2009-3722","CVE-2009-3638"]}]},{"id":"CVE-2009-3555","published":"2009-11-09T00:00:00","updated_at":"2026-06-06T01:52:54.117299+00:00","description":"\nThe TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in\nMicrosoft Internet Information Services (IIS) 7.0, mod_ssl in the Apache\nHTTP Server 2.2.14 and earlier, OpenSSL before 0.9.8l, GnuTLS 2.8.5 and\nearlier, Mozilla Network Security Services (NSS) 3.12.4 and earlier,\nmultiple Cisco products, and other products, does not properly associate\nrenegotiation handshakes with an existing connection, which allows\nman-in-the-middle attackers to insert data into HTTPS sessions, and\npossibly other types of sessions protected by TLS or SSL, by sending an\nunauthenticated request that is processed retroactively by a server in a\npost-renegotiation context, related to a \"plaintext injection\" attack, aka\nthe \"Project Mogul\" issue.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"Fixing this issue requires coordination between the IETF, SSL\nlibraries (eg OpenSSL and GnuTLS) and TLS consumers (notably HTTPS servers,\nbut most (or all) servers using TLS which support TLS renegotiation).\nProtocol-breaking changes are among the possibilities being\ndiscussed.\nThe following is based on http://extendedsubset.com/Renegotiating_TLS.pdf\nand http://extendedsubset.com/Renegotiating_TLS_pd.pdf. You are encouraged to\nread this document as well as the email thread on ietf-tls for complete\ninformation and most up-to-date status (see References).\nThere are essentially 3 types of renegotiation scenarios known at this time\nto be vulnerable, and they all require a man-in-the-middle (MITM) attack:\n1. Client certificate authentication: servers configured to require client\ncertificate authentication on a per-directory basis. Apache is known\nto be vulnerable when using this configuration. There is no generally\nusable mitigation strategy known at this time.\n2. Differing server cryptographic requirements: servers configured to\nsupport different cipher suites within the same site. One mitigation\nstrategy is to require all content on a site to use a single cipher\nsuite. Disallowing specification of TLS parameters in .htaccess files\n(generally modifiable by end users) may also be a good idea.\n3. Client-initiated renegotiation: servers configured for TLS. Apache is\nknown to be vulnerable when using using TLS and the client initiates a\nrenegotiation. There is no generally usable mitigation strategy known at\nthis time.\nThe flaw should not allow the attacker to see the contents of the connection,\nand a client cannot be redirected to another site. For the HTTPS scenarios\nlisted above, the attacker is able to perform arbitrary requests with the\ncredentials of the victim. Arbitrary POST requests may also be possible.\nAnalysis on the effects of this flaw for other protocols is ongoing.\nUntil a general fix can be found for Ubuntu, users may be interested in\nreading http://www.links.org/?p=780, which has a patch to OpenSSL to disable\nall renegotiation.\nUpdate for apache2 disabled client initiated renegotiations. This\nwon't fix per-Directory/Location configurations."},{"author":"mdeslaur","note":"openssl 0.9.8l disabled renegotiations completely, with a compile\ntime option to turn it back on. This may break connections to servers that\nhaven't been patched. openssl 0.9.8m adds an option that applications can\nuse to turn it back on:\nhttp://groups.google.com/group/mailing.openssl.cvs/browse_thread/thread/8d8add96fa471695\nTurning renegotiation off completely may break postgresql, openvpn\nalpine, psi, fetchmail, etc.\nhttp://www.mail-archive.com/openssl-dev@openssl.org/msg26800.html"},{"author":"jdstrand","note":"NSS 3.12.6 has support for the new renegotiation extension for TLS\nto implement rfc5746. NSS clients advertise their support for this\nextension and if the server also supports it, will be protected from this\nvulnerability. To maintain compatibility, NSS in Ubuntu will for the\nforeseeable future use the so-called 'transitional' mode which will fall back\nto the unprotected renegotiation method if the server doesn't support the\nnew extension.\nNSS was fixed in Ubuntu 9.10 because the new Firefox required it.\nBecause Firefox needs changes to take advantage of the new NSS, once Ubuntu\n8.04 LTS - 9.04 are updated to use an embedded NSS (and therefore won't use\nthe system NSS), we can update the system NSS for these releases.\nWhen upgrading the system NSS on Ubuntu 8.04 LTS - 9.04, be careful\nabout https://launchpad.net/bugs/559881 and https://launchpad.net/bugs/559918\n(regressions seen with the 9.10 update).\npostgresql 8.1.20, 8.3.10 and 8.4.3 now have ssl_renegotiation_limit\nto control session key renegotiation\npreliminary GNUtls patches at (in 2.9.10 development release):\nhttp://thread.gmane.org/gmane.comp.encryption.gpg.gnutls.devel/3944\nhttp://git.savannah.gnu.org/gitweb/?p=gnutls.git&a=search&h=HEAD&st=commit&s=renegotiation"},{"author":"mdeslaur","note":"jetty 6.1.22 has a CVE-2009-3555 fix: \"Prevent SSL renegotiate\nfor SSL vulnerability\""},{"author":"jdstrand","note":"RedHat RHSA-2010:0396-01 adds the \"SSLInsecureRenegotiation\"\nconfiguration directive to apache"},{"author":"mdeslaur","note":"gnutls doesn't have an API for renegotiations, so ignoring."}],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["http://www.imc.org/ietf-tls/mail-archive/msg09837.html","http://www.ietf.org/rfc/rfc5746.txt","http://extendedsubset.com/","http://extendedsubset.com/Renegotiating_TLS.pdf","http://extendedsubset.com/Renegotiating_TLS_pd.pdf","http://www.ietf.org/mail-archive/web/tls/current/msg03963.html","http://www.links.org/?p=780","http://www.links.org/?p=786","http://mail-archives.apache.org/mod_mbox/httpd-announce/200911.mbox/%3C20091107013220.31376.qmail@minotaur.apache.org%3E","https://wiki.mozilla.org/Security:Renegotiation","https://developer.mozilla.org/NSS_3.12.6_release_notes","https://ubuntu.com/security/notices/USN-860-1","https://ubuntu.com/security/notices/USN-923-1","https://ubuntu.com/security/notices/USN-927-1","https://ubuntu.com/security/notices/USN-927-2","https://ubuntu.com/security/notices/USN-927-3","http://thread.gmane.org/gmane.network.gnutls.general/1838","https://ubuntu.com/security/notices/USN-927-4","https://ubuntu.com/security/notices/USN-927-6","https://www.cve.org/CVERecord?id=CVE-2009-3555","https://ubuntu.com/security/notices/USN-1010-1","https://ubuntu.com/security/notices/USN-990-1","https://ubuntu.com/security/notices/USN-990-2"],"bugs":["https://bugs.edge.launchpad.net/ubuntu/+source/openssl/+bug/484417","http://rt.openssl.org/Ticket/Display.html?user=guest&pass=guest&id=2105","http://rt.openssl.org/index.html?q=2102","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-3555","https://bugzilla.redhat.com/show_bug.cgi?id=537962","https://bugzilla.redhat.com/show_bug.cgi?id=538373","https://bugzilla.redhat.com/show_bug.cgi?id=538456","https://bugzilla.redhat.com/show_bug.cgi?id=533234","https://bugs.launchpad.net/ubuntu/+source/nss/+bug/562332","https://bugzilla.redhat.com/show_bug.cgi?id=533125"],"patches":{"openssl":[],"apache2":["vendor: http://www.mandriva.com/en/security/advisories?name=MDVSA-2009:295","vendor: https://rhn.redhat.com/errata/RHSA-2010-0396.html"],"gnutls12":["vendor: https://rhn.redhat.com/errata/RHSA-2010-0166.html"],"gnutls13":[],"gnutls26":[],"libapache-mod-ssl":[],"openjdk-6":[],"nss":[],"sun-java6":[],"openjdk-6b18":[]},"tags":{},"packages":[{"name":"apache2","source":"https://ubuntu.com/security/cve?package=apache2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=apache2","debian":"https://tracker.debian.org/pkg/apache2","statuses":[{"release_codename":"dapper","status":"released","description":"2.0.55-4ubuntu2.9","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.2.8-1ubuntu0.14","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.2.9-7ubuntu3.5","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.2.11-2ubuntu2.5","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"2.2.12-1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.2.14-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.2.14-2","component":null,"pocket":"security"}]},{"name":"gnutls12","source":"https://ubuntu.com/security/cve?package=gnutls12","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gnutls12","debian":"https://tracker.debian.org/pkg/gnutls12","statuses":[{"release_codename":"dapper","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"gnutls13","source":"https://ubuntu.com/security/cve?package=gnutls13","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gnutls13","debian":"https://tracker.debian.org/pkg/gnutls13","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"gnutls26","source":"https://ubuntu.com/security/cve?package=gnutls26","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gnutls26","debian":"https://tracker.debian.org/pkg/gnutls26","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.10.0","component":null,"pocket":"security"}]},{"name":"libapache-mod-ssl","source":"https://ubuntu.com/security/cve?package=libapache-mod-ssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libapache-mod-ssl","debian":"https://tracker.debian.org/pkg/libapache-mod-ssl","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"nss","source":"https://ubuntu.com/security/cve?package=nss","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=nss","debian":"https://tracker.debian.org/pkg/nss","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"3.12.6-0ubuntu0.8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"3.12.6-0ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"3.12.6-0ubuntu0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"3.12.6-0ubuntu2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.12.6","component":null,"pocket":"security"}]},{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b11-2ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.7","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu13","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu3","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b18~pre4-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b18~pre4-1","component":null,"pocket":"security"}]},{"name":"openjdk-6b18","source":"https://ubuntu.com/security/cve?package=openjdk-6b18","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6b18","debian":"https://tracker.debian.org/pkg/openjdk-6b18","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"6b18-1.8.4-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b18-1.8.3-0ubuntu1~10.04.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6b18-1.8.2-4ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b22","component":null,"pocket":"security"}]},{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"dapper","status":"released","description":"0.9.8a-7ubuntu0.12","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"0.9.8g-4ubuntu3.10","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"0.9.8g-15ubuntu3.5","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"0.9.8g-16ubuntu3.2","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"0.9.8k-7ubuntu8.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.9.8m","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.22-0ubuntu1~9.04.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.22-0ubuntu1~9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.22-0ubuntu1~9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.22-0ubuntu1~10.04","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"6.22-0ubuntu1~10.10","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.22","component":null,"pocket":"security"}]}],"notices_ids":["USN-1010-1","USN-990-2","USN-990-1","USN-923-1","USN-860-1","USN-927-4","USN-927-6","USN-927-1"],"notices":[{"id":"USN-1010-1","title":"OpenJDK vulnerabilities","summary":"","instructions":"After a standard system update you need to restart any Java services,\napplications or applets to make all the necessary changes.\n","references":[],"published":"2010-10-28T14:45:06.908875","description":"Marsh Ray and Steve Dispensa discovered a flaw in the TLS and\nSSLv3 protocols. If an attacker could perform a machine-in-the-middle\nattack at the start of a TLS connection, the attacker could inject\narbitrary content at the beginning of the user's session. USN-923-1\ndisabled SSL/TLS renegotiation by default; this update implements\nthe TLS Renegotiation Indication Extension as defined in RFC 5746,\nand thus supports secure renegotiation between updated clients and\nservers. (CVE-2009-3555)\n\nIt was discovered that the HttpURLConnection class did not validate\nrequest headers set by java applets, which could allow an attacker to\ntrigger actions otherwise not allowed to HTTP clients. (CVE-2010-3541)\n\nIt was discovered that JNDI could leak information that would allow an\nattacker to to access information about otherwise-protected internal\nnetwork names. (CVE-2010-3548)\n\nIt was discovered that HttpURLConnection improperly handled the\n\"chunked\" transfer encoding method, which could allow attackers to\nconduct HTTP response splitting attacks. (CVE-2010-3549)\n\nIt was discovered that the NetworkInterface class improperly\nchecked the network \"connect\" permissions for local network\naddresses. This could allow an attacker to read local network\naddresses. (CVE-2010-3551)\n\nIt was discovered that UIDefault.ProxyLazyValue had unsafe reflection\nusage, allowing an attacker to create objects. (CVE-2010-3553)\n\nIt was discovered that multiple flaws in the CORBA reflection\nimplementation could allow an attacker to execute arbitrary code by\nmisusing permissions granted to certain system objects. (CVE-2010-3554)\n\nIt was discovered that unspecified flaws in the Swing library could\nallow untrusted applications to modify the behavior and state of\ncertain JDK classes. (CVE-2010-3557)\n\nIt was discovered that the privileged accept method of the ServerSocket\nclass in the CORBA implementation allowed it to receive connections\nfrom any host, instead of just the host of the current connection.\nAn attacker could use this flaw to bypass restrictions defined by\nnetwork permissions. (CVE-2010-3561)\n\nIt was discovered that there exists a double free in java's\nindexColorModel that could allow an attacker to cause an applet\nor application to crash, or possibly execute arbitrary code\nwith the privilege of the user running the java applet or\napplication. (CVE-2010-3562)\n\nIt was discovered that the Kerberos implementation improperly checked\nAP-REQ requests, which could allow an attacker to cause a denial of\nservice against the receiving JVM. (CVE-2010-3564)\n\nIt was discovered that improper checks of unspecified image metadata in\nJPEGImageWriter.writeImage of the imageio API could allow an attacker\nto execute arbitrary code with the privileges of the user running a\njava applet or application. (CVE-2010-3565)\n\nIt was discovered that an unspecified vulnerability in the ICC\nprofile handling code could allow an attacker to execute arbitrary\ncode with the privileges of the user running a java applet or\napplication. (CVE-2010-3566)\n\nIt was discovered that a miscalculation in the OpenType font rendering\nimplementation would allow out-of-bounds memory access. This could\nallow an attacker to execute arbitrary code with the privileges of\nthe user running a java application. (CVE-2010-3567)\n\nIt was discovered that an unspecified race condition in the way\nobjects were deserialized could allow an attacker to cause an applet\nor application to misuse the privileges of the user running the java\napplet or application. (CVE-2010-3568)\n\nIt was discovered that the defaultReadObject of the Serialization\nAPI could be tricked into setting a volatile field multiple times.\nThis could allow an attacker to execute arbitrary code with the\nprivileges of the user running a java applet or application.\n(CVE-2010-3569)\n\nIt was discovered that the HttpURLConnection class did not validate\nrequest headers set by java applets, which could allow an attacker to\ntrigger actions otherwise not allowed to HTTP clients. (CVE-2010-3573)\n\nIt was discovered that the HttpURLConnection class improperly checked\nwhether the calling code was granted the \"allowHttpTrace\" permission,\nallowing an attacker to create HTTP TRACE requests. (CVE-2010-3574)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"openjdk-6","version":"6b18-1.8.2-4ubuntu1~8.04.1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b18-1.8.2-4ubuntu1~8.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu1~8.04.1"},{"name":"openjdk-6-jdk","version":"6b18-1.8.2-4ubuntu1~8.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu1~8.04.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.2-4ubuntu1~8.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu1~8.04.1"},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.2-4ubuntu1~8.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu1~8.04.1"}],"karmic":[{"name":"openjdk-6","version":"6b18-1.8.2-4ubuntu1~9.10.1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b18-1.8.2-4ubuntu1~9.10.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu1~9.10.1"},{"name":"openjdk-6-jdk","version":"6b18-1.8.2-4ubuntu1~9.10.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu1~9.10.1"},{"name":"openjdk-6-jre","version":"6b18-1.8.2-4ubuntu1~9.10.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu1~9.10.1"},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.2-4ubuntu1~9.10.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu1~9.10.1"}],"lucid":[{"name":"openjdk-6","version":"6b18-1.8.2-4ubuntu2","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b18-1.8.2-4ubuntu2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu2"},{"name":"openjdk-6-jdk","version":"6b18-1.8.2-4ubuntu2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu2"},{"name":"openjdk-6-jre","version":"6b18-1.8.2-4ubuntu2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu2"},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.2-4ubuntu2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b18-1.8.2-4ubuntu2"}],"maverick":[{"name":"openjdk-6","version":"6b20-1.9.1-1ubuntu3","description":"","is_source":true},{"name":"openjdk-6b18","version":"6b18-1.8.2-4ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b18-1.8.2-4ubuntu1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.2-4ubuntu1"},{"name":"openjdk-6-jdk","version":"6b18-1.8.2-4ubuntu1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.2-4ubuntu1"},{"name":"openjdk-6-jre","version":"6b18-1.8.2-4ubuntu1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.2-4ubuntu1"},{"name":"openjdk-6-jre-headless","version":"6b18-1.8.2-4ubuntu1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6b18/6b18-1.8.2-4ubuntu1"}]},"type":"USN","cves_ids":["CVE-2010-3574","CVE-2010-3557","CVE-2010-3569","CVE-2010-3565","CVE-2010-3548","CVE-2010-3549","CVE-2010-3566","CVE-2010-3561","CVE-2010-3554","CVE-2010-3562","CVE-2010-3553","CVE-2010-3573","CVE-2010-3541","CVE-2010-3568","CVE-2010-3567","CVE-2010-3564","CVE-2010-3551","CVE-2009-3555"]},{"id":"USN-990-2","title":"Apache vulnerability","summary":"","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2010-09-21T13:59:34.473500","description":"USN-860-1 introduced a partial workaround to Apache that disabled client\ninitiated TLS renegotiation in order to mitigate CVE-2009-3555. USN-990-1\nintroduced the new RFC5746 renegotiation extension in openssl, and\ncompletely resolves the issue.\n\nAfter updating openssl, an Apache server will allow both patched and\nunpatched web browsers to connect, but unpatched browsers will not be able\nto renegotiate. This update introduces the new SSLInsecureRenegotiation\ndirective for Apache that may be used to re-enable insecure renegotiations\nwith unpatched web browsers. For more information, please refer to:\nhttp://httpd.apache.org/docs/2.2/mod/mod_ssl.html#sslinsecurerenegotiation\n\nOriginal advisory details:\n\n Marsh Ray and Steve Dispensa discovered a flaw in the TLS and SSLv3\n protocols. If an attacker could perform a machine-in-the-middle attack at the\n start of a TLS connection, the attacker could inject arbitrary content at\n the beginning of the user's session. This update adds backported support\n for the new RFC5746 renegotiation extension and will use it when both the\n client and the server support it.\n","is_hidden":false,"release_packages":{"dapper":[{"name":"apache2","version":"2.0.55-4ubuntu2.11","description":"","is_source":true},{"name":"apache2-common","version":"2.0.55-4ubuntu2.11","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.0.55-4ubuntu2.11"}],"hardy":[{"name":"apache2","version":"2.2.8-1ubuntu0.18","description":"","is_source":true},{"name":"apache2.2-common","version":"2.2.8-1ubuntu0.18","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.2.8-1ubuntu0.18"}],"jaunty":[{"name":"apache2","version":"2.2.11-2ubuntu2.7","description":"","is_source":true},{"name":"apache2.2-common","version":"2.2.11-2ubuntu2.7","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.2.11-2ubuntu2.7"}],"karmic":[{"name":"apache2","version":"2.2.12-1ubuntu2.3","description":"","is_source":true},{"name":"apache2.2-common","version":"2.2.12-1ubuntu2.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.2.12-1ubuntu2.3"}],"lucid":[{"name":"apache2","version":"2.2.14-5ubuntu8.2","description":"","is_source":true},{"name":"apache2.2-common","version":"2.2.14-5ubuntu8.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.2.14-5ubuntu8.2"}]},"type":"USN","cves_ids":["CVE-2009-3555"]},{"id":"USN-990-1","title":"OpenSSL vulnerability","summary":"","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2010-09-21T13:34:28.785979","description":"Marsh Ray and Steve Dispensa discovered a flaw in the TLS and SSLv3\nprotocols. If an attacker could perform a machine-in-the-middle attack at the\nstart of a TLS connection, the attacker could inject arbitrary content at\nthe beginning of the user's session. This update adds backported support\nfor the new RFC5746 renegotiation extension and will use it when both the\nclient and the server support it.\n\nATTENTION: After applying this update, a patched server will allow both\npatched and unpatched clients to connect, but unpatched clients will not be\nable to renegotiate. For more information, please refer to the following:\nhttp://www.openssl.org/docs/ssl/SSL_CTX_set_options.html#SECURE_RENEGOTIATION\n","is_hidden":false,"release_packages":{"dapper":[{"name":"openssl","version":"0.9.8a-7ubuntu0.12","description":"","is_source":true},{"name":"libssl0.9.8","version":"0.9.8a-7ubuntu0.12","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8a-7ubuntu0.12"}],"hardy":[{"name":"openssl","version":"0.9.8g-4ubuntu3.10","description":"","is_source":true},{"name":"libssl0.9.8","version":"0.9.8g-4ubuntu3.10","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8g-4ubuntu3.10"}],"jaunty":[{"name":"openssl","version":"0.9.8g-15ubuntu3.5","description":"","is_source":true},{"name":"libssl0.9.8","version":"0.9.8g-15ubuntu3.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8g-15ubuntu3.5"}],"karmic":[{"name":"openssl","version":"0.9.8g-16ubuntu3.2","description":"","is_source":true},{"name":"libssl0.9.8","version":"0.9.8g-16ubuntu3.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8g-16ubuntu3.2"}],"lucid":[{"name":"openssl","version":"0.9.8k-7ubuntu8.1","description":"","is_source":true},{"name":"libssl0.9.8","version":"0.9.8k-7ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/0.9.8k-7ubuntu8.1"}]},"type":"USN","cves_ids":["CVE-2009-3555"]},{"id":"USN-923-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart all Java applications\nto effect the necessary changes.\n","references":[],"published":"2010-04-07T02:59:42.495143","description":"Marsh Ray and Steve Dispensa discovered a flaw in the TLS and SSLv3\nprotocols. If an attacker could perform a machine-in-the-middle attack at the\nstart of a TLS connection, the attacker could inject arbitrary content\nat the beginning of the user's session. (CVE-2009-3555)\n\nIt was discovered that Loader-constraint table, Policy/PolicyFile,\nInflater/Deflater, drag/drop access, and deserialization did not correctly\nhandle certain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2010-0082, CVE-2010-0084,\nCVE-2010-0085, CVE-2010-0088, CVE-2010-0091, CVE-2010-0094)\n\nIt was discovered that AtomicReferenceArray, System.arraycopy,\nInetAddress, and HashAttributeSet did not correctly handle certain\nsituations. If a remote attacker could trigger specific error conditions,\na Java application could crash, leading to a denial of service.\n(CVE-2010-0092, CVE-2010-0093, CVE-2010-0095, CVE-2010-0845)\n\nIt was discovered that Pack200, CMM readMabCurveData, ImagingLib, and\nthe AWT library did not correctly check buffer lengths. If a user or\nautomated system were tricked into handling specially crafted JAR files or\nimages, a remote attacker could crash the Java application or possibly\ngain user privileges (CVE-2010-0837, CVE-2010-0838, CVE-2010-0847,\nCVE-2010-0848).\n\nIt was discovered that applets did not correctly handle certain trust\nchains. If a user were tricked into running a specially crafted applet,\na remote attacker could possibly run untrusted code with user privileges.\n(CVE-2010-0840)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"openjdk-6","version":"6b11-2ubuntu2.2","description":"","is_source":true},{"name":"openjdk-6-jre","version":"6b11-2ubuntu2.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b11-2ubuntu2.2"},{"name":"openjdk-6-jre-lib","version":"6b11-2ubuntu2.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b11-2ubuntu2.2"}],"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.7","description":"","is_source":true},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.7","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.7"},{"name":"openjdk-6-jre-lib","version":"6b12-0ubuntu6.7","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.7"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu13","description":"","is_source":true},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu13"},{"name":"openjdk-6-jre-lib","version":"6b14-1.4.1-0ubuntu13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu13"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu3","description":"","is_source":true},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu3"},{"name":"openjdk-6-jre-lib","version":"6b16-1.6.1-3ubuntu3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu3"}]},"type":"USN","cves_ids":["CVE-2009-3555","CVE-2010-0082","CVE-2010-0084","CVE-2010-0085","CVE-2010-0088","CVE-2010-0091","CVE-2010-0092","CVE-2010-0093","CVE-2010-0094","CVE-2010-0095","CVE-2010-0837","CVE-2010-0838","CVE-2010-0840","CVE-2010-0845","CVE-2010-0847","CVE-2010-0848"]},{"id":"USN-860-1","title":"Apache vulnerabilities","summary":"Apache vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-11-19T06:33:50.090541","description":"Marsh Ray and Steve Dispensa discovered a flaw in the TLS and SSLv3\nprotocols. If an attacker could perform a machine-in-the-middle attack at the\nstart of a TLS connection, the attacker could inject arbitrary content at\nthe beginning of the user's session. The flaw is with TLS renegotiation and\npotentially affects any software that supports this feature. Attacks\nagainst the HTTPS protocol are known, with the severity of the issue\ndepending on the safeguards used in the web application. Until the TLS\nprotocol and underlying libraries are adjusted to defend against this\nvulnerability, a partial, temporary workaround has been applied to Apache\nthat disables client initiated TLS renegotiation. This update does not\nprotect against server initiated TLS renegotiation when using\nSSLVerifyClient and SSLCipherSuite on a per Directory or Location basis.\nUsers can defend againt server inititiated TLS renegotiation attacks by\nadjusting their Apache configuration to use SSLVerifyClient and\nSSLCipherSuite only on the server or virtual host level. (CVE-2009-3555)\n\nIt was discovered that mod_proxy_ftp in Apache did not properly sanitize\nits input when processing replies to EPASV and PASV commands. An attacker\ncould use this to cause a denial of service in the Apache child process.\n(CVE-2009-3094)\n\nAnother flaw was discovered in mod_proxy_ftp. If Apache is configured as a\nreverse proxy, an attacker could send a crafted HTTP header to bypass\nintended access controls and send arbitrary commands to the FTP server.\n(CVE-2009-3095)\n","is_hidden":false,"release_packages":{"dapper":[{"name":"apache2","version":"2.0.55-4ubuntu2.9","description":"","is_source":true},{"name":"apache2-common","version":"2.0.55-4ubuntu2.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.0.55-4ubuntu2.9"}],"hardy":[{"name":"apache2","version":"2.2.8-1ubuntu0.14","description":"","is_source":true},{"name":"apache2.2-common","version":"2.2.8-1ubuntu0.14","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.2.8-1ubuntu0.14"}],"intrepid":[{"name":"apache2","version":"2.2.9-7ubuntu3.5","description":"","is_source":true},{"name":"apache2.2-common","version":"2.2.9-7ubuntu3.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.2.9-7ubuntu3.5"}],"jaunty":[{"name":"apache2","version":"2.2.11-2ubuntu2.5","description":"","is_source":true},{"name":"apache2.2-common","version":"2.2.11-2ubuntu2.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.2.11-2ubuntu2.5"}],"karmic":[{"name":"apache2","version":"2.2.12-1ubuntu2.1","description":"","is_source":true},{"name":"apache2.2-common","version":"2.2.12-1ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/apache2","version_link":"https://launchpad.net/ubuntu/+source/apache2/2.2.12-1ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2009-3094","CVE-2009-3095","CVE-2009-3555"]},{"id":"USN-927-4","title":"nss vulnerability","summary":"Under certain conditions, an attacker could execute commands in web\napplications using your authenticated credentials.\n","instructions":"After a standard system upgrade you need to restart your session to effect\nthe necessary changes.\n","references":[],"published":"2010-06-29T19:08:57.242465","description":"USN-927-1 fixed vulnerabilities in nss in Ubuntu 9.10. This update provides\nthe corresponding updates for Ubuntu 8.04 LTS.\n\nOriginal advisory details:\n\n Marsh Ray and Steve Dispensa discovered a flaw in the TLS and SSLv3\n protocols. If an attacker could perform a machine-in-the-middle attack at the\n start of a TLS connection, the attacker could inject arbitrary content at\n the beginning of the user's session. This update adds support for the new\n new renegotiation extension and will use it when the server supports it.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"nss","version":"3.12.6-0ubuntu0.8.04.1","description":"Network Security Service libraries","is_source":true},{"name":"libnss3-1d","version":"3.12.6-0ubuntu0.8.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/nss","version_link":"https://launchpad.net/ubuntu/+source/nss/3.12.6-0ubuntu0.8.04.1"}]},"type":"USN","cves_ids":["CVE-2009-3555"]},{"id":"USN-927-6","title":"NSS vulnerability","summary":"Under certain conditions, an attacker could execute commands in web\napplications using your authenticated credentials.\n","instructions":"After a standard system upgrade you need to restart your session to effect\nthe necessary changes.\n","references":[],"published":"2010-07-23T06:35:40.846807","description":"USN-927-1 fixed vulnerabilities in NSS on Ubuntu 9.10. This update provides the\ncorresponding updates for Ubuntu 9.04.\n\nOriginal advisory details:\n\n Marsh Ray and Steve Dispensa discovered a flaw in the TLS and SSLv3\n protocols. If an attacker could perform a machine-in-the-middle attack at the\n start of a TLS connection, the attacker could inject arbitrary content at\n the beginning of the user's session. This update adds support for the new\n new renegotiation extension and will use it when the server supports it.\n","is_hidden":false,"release_packages":{"jaunty":[{"name":"nss","version":"3.12.6-0ubuntu0.9.04.1","description":"Network Security Service libraries","is_source":true},{"name":"libnss3-1d","version":"3.12.6-0ubuntu0.9.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/nss","version_link":"https://launchpad.net/ubuntu/+source/nss/3.12.6-0ubuntu0.9.04.1"}]},"type":"USN","cves_ids":["CVE-2009-3555"]},{"id":"USN-927-1","title":"NSS vulnerability","summary":"NSS vulnerability","instructions":"After a standard system upgrade you need to restart your session to effect\nthe necessary changes.\n","references":[],"published":"2010-04-09T20:45:10.167802","description":"Marsh Ray and Steve Dispensa discovered a flaw in the TLS and SSLv3\nprotocols. If an attacker could perform a machine-in-the-middle attack at the\nstart of a TLS connection, the attacker could inject arbitrary content at\nthe beginning of the user's session. This update adds support for the new\nnew renegotiation extension and will use it when the server supports it.\n","is_hidden":false,"release_packages":{"karmic":[{"name":"nss","version":"3.12.6-0ubuntu0.9.10.1","description":"","is_source":true},{"name":"libnss3-1d","version":"3.12.6-0ubuntu0.9.10.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/nss","version_link":"https://launchpad.net/ubuntu/+source/nss/3.12.6-0ubuntu0.9.10.1"}]},"type":"USN","cves_ids":["CVE-2009-3555"]}]},{"id":"CVE-2009-2820","published":"2009-11-09T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe web interface in CUPS before 1.4.2, as used on Apple Mac OS X before\n10.6.2 and other platforms, does not properly handle (1) HTTP headers and\n(2) HTML templates, which allows remote attackers to conduct cross-site\nscripting (XSS) attacks and HTTP response splitting attacks via vectors\nrelated to (a) the product's web interface, (b) the configuration of the\nprint system, and (c) the titles of printed jobs, as demonstrated by an XSS\nattack that uses the kerberos parameter to the admin program, and leverages\nattribute injection and HTTP Parameter Pollution (HPP) issues.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-856-1","https://www.cve.org/CVERecord?id=CVE-2009-2820"],"bugs":[""],"patches":{"cups":[],"cupsys":[]},"tags":{},"packages":[{"name":"cups","source":"https://ubuntu.com/security/cve?package=cups","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=cups","debian":"https://tracker.debian.org/pkg/cups","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1.3.9-2ubuntu9.3","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.3.9-17ubuntu3.4","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.4.1-5ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.4.2","component":null,"pocket":"security"}]},{"name":"cupsys","source":"https://ubuntu.com/security/cve?package=cupsys","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=cupsys","debian":"https://tracker.debian.org/pkg/cupsys","statuses":[{"release_codename":"dapper","status":"released","description":"1.2.2-0ubuntu0.6.06.15","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1.3.7-1ubuntu3.6","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.4.2","component":null,"pocket":"security"}]}],"notices_ids":["USN-856-1"],"notices":[{"id":"USN-856-1","title":"CUPS vulnerability","summary":"CUPS vulnerability","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-11-10T13:39:21.098542","description":"Aaron Sigel discovered that the CUPS web interface incorrectly protected\nagainst cross-site scripting (XSS) and cross-site request forgery (CSRF)\nattacks. If an authenticated user were tricked into visiting a malicious\nwebsite while logged into CUPS, a remote attacker could modify the CUPS\nconfiguration and possibly steal confidential data.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"cupsys","version":"1.3.7-1ubuntu3.6","description":"","is_source":true},{"name":"cupsys","version":"1.3.7-1ubuntu3.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/cupsys","version_link":"https://launchpad.net/ubuntu/+source/cupsys/1.3.7-1ubuntu3.6"}],"dapper":[{"name":"cupsys","version":"1.2.2-0ubuntu0.6.06.15","description":"","is_source":true},{"name":"cupsys","version":"1.2.2-0ubuntu0.6.06.15","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/cupsys","version_link":"https://launchpad.net/ubuntu/+source/cupsys/1.2.2-0ubuntu0.6.06.15"}],"intrepid":[{"name":"cups","version":"1.3.9-2ubuntu9.3","description":"","is_source":true},{"name":"cups","version":"1.3.9-2ubuntu9.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/cups","version_link":"https://launchpad.net/ubuntu/+source/cups/1.3.9-2ubuntu9.3"}],"jaunty":[{"name":"cups","version":"1.3.9-17ubuntu3.4","description":"","is_source":true},{"name":"cups","version":"1.3.9-17ubuntu3.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/cups","version_link":"https://launchpad.net/ubuntu/+source/cups/1.3.9-17ubuntu3.4"}],"karmic":[{"name":"cups","version":"1.4.1-5ubuntu2.1","description":"","is_source":true},{"name":"cups","version":"1.4.1-5ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/cups","version_link":"https://launchpad.net/ubuntu/+source/cups/1.4.1-5ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2009-2820"]}]},{"id":"CVE-2009-3850","published":"2009-11-06T15:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nBlender 2.34, 2.35a, 2.40, and 2.49b allows remote attackers to execute\narbitrary code via a .blend file that contains Python statements in the\nonLoad action of a ScriptLink SDNA.","ubuntu_description":"","notes":[{"author":"kees","note":"user-assisted"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3850"],"bugs":[""],"patches":{"blender":[]},"tags":{},"packages":[{"name":"blender","source":"https://ubuntu.com/security/cve?package=blender","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=blender","debian":"https://tracker.debian.org/pkg/blender","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"vivid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3300","published":"2009-11-06T15:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple cross-site scripting (XSS) vulnerabilities in the Identity\nProvider (IdP) 1.3.x before 1.3.4 and 2.x before 2.1.5, and the Service\nProvider 1.3.x before 1.3.5 and 2.x before 2.3, in Internet2 Middleware\nInitiative Shibboleth allow remote attackers to inject arbitrary web script\nor HTML via URLs that are encountered in redirections, and appear in\nautomatically generated forms.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3300"],"bugs":[""],"patches":{"opensaml2":[],"shibboleth-sp":[],"shibboleth-sp2":[],"xmltooling":[]},"tags":{},"packages":[{"name":"opensaml2","source":"https://ubuntu.com/security/cve?package=opensaml2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=opensaml2","debian":"https://tracker.debian.org/pkg/opensaml2","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.0-2+lenny2build0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"2.3-1build1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"2.3-1build1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"2.3-1build1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"2.3-1build1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.3","component":null,"pocket":"security"}]},{"name":"shibboleth-sp","source":"https://ubuntu.com/security/cve?package=shibboleth-sp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=shibboleth-sp","debian":"https://tracker.debian.org/pkg/shibboleth-sp","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"shibboleth-sp2","source":"https://ubuntu.com/security/cve?package=shibboleth-sp2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=shibboleth-sp2","debian":"https://tracker.debian.org/pkg/shibboleth-sp2","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"2.3+dfsg-1build1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"2.3+dfsg-1build1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"2.3+dfsg-1build1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"2.3+dfsg-1build1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.3","component":null,"pocket":"security"}]},{"name":"xmltooling","source":"https://ubuntu.com/security/cve?package=xmltooling","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xmltooling","debian":"https://tracker.debian.org/pkg/xmltooling","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"1.3.1-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"1.3.1-1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.3.1-1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"1.3.1-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.3.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3725","published":"2009-11-06T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe connector layer in the Linux kernel before 2.6.31.5 does not require\nthe CAP_SYS_ADMIN capability for certain interaction with the (1) uvesafb,\n(2) pohmelfs, (3) dst, or (4) dm subsystem, which allows local users to\nbypass intended access restrictions and gain privileges via calls to\nfunctions in these subsystems.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-864-1","https://www.cve.org/CVERecord?id=CVE-2009-3725"],"bugs":[""],"patches":{"linux-source-2.6.15":[],"linux":[]},"tags":{},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.6.24-26.64","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.6.27-16.44","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.6.28-17.58","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"2.6.31-16.52","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.32","component":null,"pocket":"security"}]},{"name":"linux-source-2.6.15","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.15","debian":"https://tracker.debian.org/pkg/linux-source-2.6.15","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-864-1"],"notices":[{"id":"USN-864-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"After a standard system upgrade you need to reboot your computer to\neffect the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change (except for Ubuntu 6.06)\nthe kernel updates have been given a new version number, which requires\nyou to recompile and reinstall all third party kernel modules you\nmight have installed. If you use linux-restricted-modules, you have to\nupdate that package as well to get modules which work with the new kernel\nversion. Unless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-server, linux-powerpc), a standard system\nupgrade will automatically perform this as well.\n","references":[],"published":"2009-12-05T01:52:13.000003","description":"It was discovered that the AX.25 network subsystem did not correctly\ncheck integer signedness in certain setsockopt calls. A local attacker\ncould exploit this to crash the system, leading to a denial of service.\nUbuntu 9.10 was not affected. (CVE-2009-2909)\n\nJan Beulich discovered that the kernel could leak register contents to\n32-bit processes that were switched to 64-bit mode. A local attacker\ncould run a specially crafted binary to read register values from an\nearlier process, leading to a loss of privacy. (CVE-2009-2910)\n\nDave Jones discovered that the gdth SCSI driver did not correctly validate\narray indexes in certain ioctl calls. A local attacker could exploit\nthis to crash the system or gain elevated privileges. (CVE-2009-3080)\n\nEric Dumazet and Jiri Pirko discovered that the TC and CLS subsystems\nwould leak kernel memory via uninitialized structure members. A local\nattacker could exploit this to read several bytes of kernel memory,\nleading to a loss of privacy. (CVE-2009-3228, CVE-2009-3612)\n\nEarl Chew discovered race conditions in pipe handling. A local attacker\ncould exploit anonymous pipes via /proc/*/fd/ and crash the system or\ngain root privileges. (CVE-2009-3547)\n\nDave Jones and Francois Romieu discovered that the r8169 network driver\ncould be made to leak kernel memory. A remote attacker could send a large\nnumber of jumbo frames until the system memory was exhausted, leading\nto a denial of service. Ubuntu 9.10 was not affected. (CVE-2009-3613).\n\nBen Hutchings discovered that the ATI Rage 128 video driver did not\ncorrectly validate initialization states. A local attacker could\nmake specially crafted ioctl calls to crash the system or gain root\nprivileges. (CVE-2009-3620)\n\nTomoki Sekiyama discovered that Unix sockets did not correctly verify\nnamespaces. A local attacker could exploit this to cause a system hang,\nleading to a denial of service. (CVE-2009-3621)\n\nJ. Bruce Fields discovered that NFSv4 did not correctly use the credential\ncache. A local attacker using a mount with AUTH_NULL authentication\ncould exploit this to crash the system or gain root privileges. Only\nUbuntu 9.10 was affected. (CVE-2009-3623)\n\nAlexander Zangerl discovered that the kernel keyring did not correctly\nreference count. A local attacker could issue a series of specially\ncrafted keyring calls to crash the system or gain root privileges.\nOnly Ubuntu 9.10 was affected. (CVE-2009-3624)\n\nDavid Wagner discovered that KVM did not correctly bounds-check CPUID\nentries. A local attacker could exploit this to crash the system\nor possibly gain elevated privileges. Ubuntu 6.06 and 9.10 were not\naffected. (CVE-2009-3638)\n\nAvi Kivity discovered that KVM did not correctly check privileges when\naccessing debug registers. A local attacker could exploit this to\ncrash a host system from within a guest system, leading to a denial of\nservice. Ubuntu 6.06 and 9.10 were not affected. (CVE-2009-3722)\n\nPhilip Reisner discovered that the connector layer for uvesafb, pohmelfs,\ndst, and dm did not correctly check capabilties. A local attacker could\nexploit this to crash the system or gain elevated privileges. Ubuntu\n6.06 was not affected. (CVE-2009-3725)\n\nTrond Myklebust discovered that NFSv4 clients did not robustly\nverify attributes. A malicious remote NFSv4 server could exploit\nthis to crash a client or gain root privileges. Ubuntu 9.10 was not\naffected. (CVE-2009-3726)\n\nRobin Getz discovered that NOMMU systems did not correctly validate\nNULL pointers in do_mmap_pgoff calls. A local attacker could attempt to\nallocate large amounts of memory to crash the system, leading to a denial\nof service. Only Ubuntu 6.06 and 9.10 were affected. (CVE-2009-3888)\n\nJoseph Malicki discovered that the MegaRAID SAS driver had\nworld-writable option files. A local attacker could exploit these\nto disrupt the behavior of the controller, leading to a denial of\nservice. (CVE-2009-3889, CVE-2009-3939)\n\nRoel Kluin discovered that the Hisax ISDN driver did not correctly\ncheck the size of packets. A remote attacker could send specially\ncrafted packets to cause a system crash, leading to a denial of\nservice. (CVE-2009-4005)\n\nLennert Buytenhek discovered that certain 802.11 states were not handled\ncorrectly. A physically-proximate remote attacker could send specially\ncrafted wireless traffic that would crash the system, leading to a denial\nof service. Only Ubuntu 9.10 was affected. (CVE-2009-4026, CVE-2009-4027)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"linux","version":"2.6.24-26.64","description":"","is_source":true},{"name":"linux-image-2.6.24-26-mckinley","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-generic","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-hppa32","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-386","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-sparc64-smp","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-openvz","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-powerpc","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-itanium","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-lpiacompat","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-xen","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-lpia","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"usb-modules-2.6.24-26-sparc64-di","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-powerpc-smp","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-virtual","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-rt","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-server","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-powerpc64-smp","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-hppa64","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"},{"name":"linux-image-2.6.24-26-sparc64","version":"2.6.24-26.64","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-26.64"}],"dapper":[{"name":"linux-source-2.6.15","version":"2.6.15-55.81","description":"","is_source":true},{"name":"linux-image-2.6.15-55-hppa64","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-mckinley","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-powerpc-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-hppa32-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-686","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-amd64-k8","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-amd64-server","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-386","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-sparc64-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-k7","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-sparc64","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-server","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-powerpc64-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-hppa32","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-mckinley-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-server-bigiron","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-itanium-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-amd64-xeon","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-powerpc","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-amd64-generic","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-hppa64-smp","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"},{"name":"linux-image-2.6.15-55-itanium","version":"2.6.15-55.81","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.81"}],"intrepid":[{"name":"linux","version":"2.6.27-16.44","description":"","is_source":true},{"name":"linux-image-2.6.27-16-virtual","version":"2.6.27-16.44","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-16.44"},{"name":"linux-image-2.6.27-16-server","version":"2.6.27-16.44","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-16.44"},{"name":"linux-image-2.6.27-16-generic","version":"2.6.27-16.44","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-16.44"}],"jaunty":[{"name":"linux","version":"2.6.28-17.58","description":"","is_source":true},{"name":"linux-image-2.6.28-17-imx51","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-virtual","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-server","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-versatile","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-iop32x","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-generic","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-ixp4xx","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"},{"name":"linux-image-2.6.28-17-lpia","version":"2.6.28-17.58","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-17.58"}],"karmic":[{"name":"linux","version":"2.6.31-16.52","description":"","is_source":true},{"name":"linux-image-2.6.31-16-powerpc-smp","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-server","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-powerpc64-smp","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-lpia","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-386","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-generic-pae","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-sparc64-smp","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-virtual","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-sparc64","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-ia64","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-generic","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"},{"name":"linux-image-2.6.31-16-powerpc","version":"2.6.31-16.52","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.31-16.52"}]},"type":"USN","cves_ids":["CVE-2009-3726","CVE-2009-4027","CVE-2009-3624","CVE-2009-3612","CVE-2009-3547","CVE-2009-3613","CVE-2009-3725","CVE-2009-3620","CVE-2009-3623","CVE-2009-3888","CVE-2009-3889","CVE-2009-3939","CVE-2009-4005","CVE-2009-3621","CVE-2009-2910","CVE-2009-4026","CVE-2009-3228","CVE-2009-3080","CVE-2009-2909","CVE-2009-3722","CVE-2009-3638"]}]},{"id":"CVE-2009-3872","published":"2009-11-05T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the JPEG JFIF Decoder in Sun Java SE in JDK\nand JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE\n1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows remote\nattackers to gain privileges via a crafted image file, aka Bug Id 6862969.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://www.cve.org/CVERecord?id=CVE-2009-3872"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[]},"tags":{},"packages":[{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3868","published":"2009-11-05T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nSun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before\nUpdate 17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before\n1.4.2_24 does not properly parse color profiles, which allows remote\nattackers to gain privileges via a crafted image file, aka Bug Id 6862970.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://www.cve.org/CVERecord?id=CVE-2009-3868"],"bugs":[""],"patches":{"sun-java5":[]},"tags":{},"packages":[{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3867","published":"2009-11-05T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nStack-based buffer overflow in the HsbParser.getSoundBank function in Sun\nJava SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update\n17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before\n1.4.2_24 allows remote attackers to execute arbitrary code via a long file:\nURL in an argument, aka Bug Id 6854303.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://java.sun.com/javase/6/webnotes/6u17.html","http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1","https://www.cve.org/CVERecord?id=CVE-2009-3867"],"bugs":[""],"patches":{"sun-java5":[]},"tags":{},"packages":[{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3866","published":"2009-11-05T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe Java Web Start Installer in Sun Java SE in JDK and JRE 6 before Update\n17 does not properly use security model permissions when removing installer\nextensions, which allows remote attackers to execute arbitrary code by\nmodifying a certain JNLP file to have a URL field that points to an\nunintended trusted application, aka Bug Id 6872824.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-269870-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://www.cve.org/CVERecord?id=CVE-2009-3866"],"bugs":[""],"patches":{"sun-java6":[]},"tags":{},"packages":[{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3865","published":"2009-11-05T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe launch method in the Deployment Toolkit plugin in Java Runtime\nEnvironment (JRE) in Sun Java SE in JDK and JRE 6 before Update 17 allows\nremote attackers to execute arbitrary commands via a crafted web page, aka\nBug Id 6869752.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://java.sun.com/javase/6/webnotes/6u17.html","http://sunsolve.sun.com/search/document.do?assetkey=1-66-269869-1","https://www.cve.org/CVERecord?id=CVE-2009-3865"],"bugs":[""],"patches":{"sun-java6":[]},"tags":{},"packages":[{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3864","published":"2009-11-05T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe Java Update functionality in Java Runtime Environment (JRE) in Sun Java\nSE in JDK and JRE 5.0 before Update 22 and JDK and JRE 6 before Update 17,\nwhen a non-English version of Windows is used, does not retrieve available\nnew JRE versions, which allows remote attackers to leverage vulnerabilities\nin older releases of this software, aka Bug Id 6869694.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"probably windows-specific"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://java.sun.com/javase/6/webnotes/6u17.html","https://www.cve.org/CVERecord?id=CVE-2009-3864"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[]},"tags":{},"packages":[{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3877","published":"2009-11-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in Sun Java SE in JDK and JRE 5.0 before Update\n22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and\nSDK and JRE 1.4.x before 1.4.2_24 allows remote attackers to cause a denial\nof service (memory consumption) via crafted HTTP headers, which are not\nproperly parsed by the ASN.1 DER input stream parser, aka Bug Id 6864911.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270476-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://ubuntu.com/security/notices/USN-859-1","https://www.cve.org/CVERecord?id=CVE-2009-3877"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu12","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b17","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":["USN-859-1"],"notices":[{"id":"USN-859-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-11-12T22:06:57.164261","description":"Dan Kaminsky discovered that SSL certificates signed with MD2 could be\nspoofed given enough time. As a result, an attacker could potentially\ncreate a malicious trusted certificate to impersonate another site. This\nupdate handles this issue by completely disabling MD2 for certificate\nvalidation in OpenJDK. (CVE-2009-2409)\n\nIt was discovered that ICC profiles could be identified with\n\"..\" pathnames. If a user were tricked into running a specially\ncrafted applet, a remote attacker could gain information about a local\nsystem. (CVE-2009-3728)\n\nPeter Vreugdenhil discovered multiple flaws in the processing of graphics\nin the AWT library. If a user were tricked into running a specially\ncrafted applet, a remote attacker could crash the application or run\narbitrary code with user privileges. (CVE-2009-3869, CVE-2009-3871)\n\nMultiple flaws were discovered in JPEG and BMP image handling. If a user\nwere tricked into loading a specially crafted image, a remote attacker\ncould crash the application or run arbitrary code with user privileges.\n(CVE-2009-3873, CVE-2009-3874, CVE-2009-3885)\n\nCoda Hale discovered that HMAC-based signatures were not correctly\nvalidated. Remote attackers could bypass certain forms of authentication,\ngranting unexpected access. (CVE-2009-3875)\n\nMultiple flaws were discovered in ASN.1 parsing. A remote attacker\ncould send a specially crafted HTTP stream that would exhaust system\nmemory and lead to a denial of service. (CVE-2009-3876, CVE-2009-3877)\n\nIt was discovered that the graphics configuration subsystem did\nnot correctly handle arrays. If a user were tricked into running\na specially crafted applet, a remote attacker could exploit this\nto crash the application or execute arbitrary code with user\nprivileges. (CVE-2009-3879)\n\nIt was discovered that loggers and Swing did not correctly handle\ncertain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2009-3880, CVE-2009-3882,\nCVE-2009-3883)\n\nIt was discovered that the ClassLoader did not correctly handle certain\noptions. If a user were tricked into running a specially crafted\napplet, a remote attacker could execute arbitrary code with user\nprivileges. (CVE-2009-3881)\n\nIt was discovered that time zone file loading could be used to determine\nthe existence of files on the local system. If a user were tricked into\nrunning a specially crafted applet, private information could be leaked\nto a remote attacker, leading to a loss of privacy. (CVE-2009-3884)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.6","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu12","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"}]},"type":"USN","cves_ids":["CVE-2009-3728","CVE-2009-3883","CVE-2009-3884","CVE-2009-3877","CVE-2009-3880","CVE-2009-3881","CVE-2009-3879","CVE-2009-3874","CVE-2009-3871","CVE-2009-3873","CVE-2009-3876","CVE-2009-3882","CVE-2009-3885","CVE-2009-3875","CVE-2009-3869","CVE-2009-2409"]}]},{"id":"CVE-2009-3876","published":"2009-11-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in Sun Java SE in JDK and JRE 5.0 before Update\n22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and\nSDK and JRE 1.4.x before 1.4.2_24 allows remote attackers to cause a denial\nof service (memory consumption) via crafted DER encoded data, which is not\nproperly decoded by the ASN.1 DER input stream parser, aka Bug Id 6864911.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270476-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://ubuntu.com/security/notices/USN-859-1","https://www.cve.org/CVERecord?id=CVE-2009-3876"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu12","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b17","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":["USN-859-1"],"notices":[{"id":"USN-859-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-11-12T22:06:57.164261","description":"Dan Kaminsky discovered that SSL certificates signed with MD2 could be\nspoofed given enough time. As a result, an attacker could potentially\ncreate a malicious trusted certificate to impersonate another site. This\nupdate handles this issue by completely disabling MD2 for certificate\nvalidation in OpenJDK. (CVE-2009-2409)\n\nIt was discovered that ICC profiles could be identified with\n\"..\" pathnames. If a user were tricked into running a specially\ncrafted applet, a remote attacker could gain information about a local\nsystem. (CVE-2009-3728)\n\nPeter Vreugdenhil discovered multiple flaws in the processing of graphics\nin the AWT library. If a user were tricked into running a specially\ncrafted applet, a remote attacker could crash the application or run\narbitrary code with user privileges. (CVE-2009-3869, CVE-2009-3871)\n\nMultiple flaws were discovered in JPEG and BMP image handling. If a user\nwere tricked into loading a specially crafted image, a remote attacker\ncould crash the application or run arbitrary code with user privileges.\n(CVE-2009-3873, CVE-2009-3874, CVE-2009-3885)\n\nCoda Hale discovered that HMAC-based signatures were not correctly\nvalidated. Remote attackers could bypass certain forms of authentication,\ngranting unexpected access. (CVE-2009-3875)\n\nMultiple flaws were discovered in ASN.1 parsing. A remote attacker\ncould send a specially crafted HTTP stream that would exhaust system\nmemory and lead to a denial of service. (CVE-2009-3876, CVE-2009-3877)\n\nIt was discovered that the graphics configuration subsystem did\nnot correctly handle arrays. If a user were tricked into running\na specially crafted applet, a remote attacker could exploit this\nto crash the application or execute arbitrary code with user\nprivileges. (CVE-2009-3879)\n\nIt was discovered that loggers and Swing did not correctly handle\ncertain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2009-3880, CVE-2009-3882,\nCVE-2009-3883)\n\nIt was discovered that the ClassLoader did not correctly handle certain\noptions. If a user were tricked into running a specially crafted\napplet, a remote attacker could execute arbitrary code with user\nprivileges. (CVE-2009-3881)\n\nIt was discovered that time zone file loading could be used to determine\nthe existence of files on the local system. If a user were tricked into\nrunning a specially crafted applet, private information could be leaked\nto a remote attacker, leading to a loss of privacy. (CVE-2009-3884)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.6","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu12","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"}]},"type":"USN","cves_ids":["CVE-2009-3728","CVE-2009-3883","CVE-2009-3884","CVE-2009-3877","CVE-2009-3880","CVE-2009-3881","CVE-2009-3879","CVE-2009-3874","CVE-2009-3871","CVE-2009-3873","CVE-2009-3876","CVE-2009-3882","CVE-2009-3885","CVE-2009-3875","CVE-2009-3869","CVE-2009-2409"]}]},{"id":"CVE-2009-3875","published":"2009-11-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe MessageDigest.isEqual function in Java Runtime Environment (JRE) in Sun\nJava SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update\n17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before\n1.4.2_24 allows remote attackers to spoof HMAC-based digital signatures,\nand possibly bypass authentication, via unspecified vectors related to\n\"timing attack vulnerabilities,\" aka Bug Id 6863503.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270475-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://ubuntu.com/security/notices/USN-859-1","https://www.cve.org/CVERecord?id=CVE-2009-3875"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu12","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b17","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":["USN-859-1"],"notices":[{"id":"USN-859-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-11-12T22:06:57.164261","description":"Dan Kaminsky discovered that SSL certificates signed with MD2 could be\nspoofed given enough time. As a result, an attacker could potentially\ncreate a malicious trusted certificate to impersonate another site. This\nupdate handles this issue by completely disabling MD2 for certificate\nvalidation in OpenJDK. (CVE-2009-2409)\n\nIt was discovered that ICC profiles could be identified with\n\"..\" pathnames. If a user were tricked into running a specially\ncrafted applet, a remote attacker could gain information about a local\nsystem. (CVE-2009-3728)\n\nPeter Vreugdenhil discovered multiple flaws in the processing of graphics\nin the AWT library. If a user were tricked into running a specially\ncrafted applet, a remote attacker could crash the application or run\narbitrary code with user privileges. (CVE-2009-3869, CVE-2009-3871)\n\nMultiple flaws were discovered in JPEG and BMP image handling. If a user\nwere tricked into loading a specially crafted image, a remote attacker\ncould crash the application or run arbitrary code with user privileges.\n(CVE-2009-3873, CVE-2009-3874, CVE-2009-3885)\n\nCoda Hale discovered that HMAC-based signatures were not correctly\nvalidated. Remote attackers could bypass certain forms of authentication,\ngranting unexpected access. (CVE-2009-3875)\n\nMultiple flaws were discovered in ASN.1 parsing. A remote attacker\ncould send a specially crafted HTTP stream that would exhaust system\nmemory and lead to a denial of service. (CVE-2009-3876, CVE-2009-3877)\n\nIt was discovered that the graphics configuration subsystem did\nnot correctly handle arrays. If a user were tricked into running\na specially crafted applet, a remote attacker could exploit this\nto crash the application or execute arbitrary code with user\nprivileges. (CVE-2009-3879)\n\nIt was discovered that loggers and Swing did not correctly handle\ncertain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2009-3880, CVE-2009-3882,\nCVE-2009-3883)\n\nIt was discovered that the ClassLoader did not correctly handle certain\noptions. If a user were tricked into running a specially crafted\napplet, a remote attacker could execute arbitrary code with user\nprivileges. (CVE-2009-3881)\n\nIt was discovered that time zone file loading could be used to determine\nthe existence of files on the local system. If a user were tricked into\nrunning a specially crafted applet, private information could be leaked\nto a remote attacker, leading to a loss of privacy. (CVE-2009-3884)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.6","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu12","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"}]},"type":"USN","cves_ids":["CVE-2009-3728","CVE-2009-3883","CVE-2009-3884","CVE-2009-3877","CVE-2009-3880","CVE-2009-3881","CVE-2009-3879","CVE-2009-3874","CVE-2009-3871","CVE-2009-3873","CVE-2009-3876","CVE-2009-3882","CVE-2009-3885","CVE-2009-3875","CVE-2009-3869","CVE-2009-2409"]}]},{"id":"CVE-2009-3874","published":"2009-11-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nInteger overflow in the JPEGImageReader implementation in the ImageI/O\ncomponent in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6\nbefore Update 17, and SDK and JRE 1.4.x before 1.4.2_24 allows remote\nattackers to execute arbitrary code via large subsample dimensions in a\nJPEG file that triggers a heap-based buffer overflow, aka Bug Id 6874643.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://ubuntu.com/security/notices/USN-859-1","https://www.cve.org/CVERecord?id=CVE-2009-3874"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu12","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b17","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":["USN-859-1"],"notices":[{"id":"USN-859-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-11-12T22:06:57.164261","description":"Dan Kaminsky discovered that SSL certificates signed with MD2 could be\nspoofed given enough time. As a result, an attacker could potentially\ncreate a malicious trusted certificate to impersonate another site. This\nupdate handles this issue by completely disabling MD2 for certificate\nvalidation in OpenJDK. (CVE-2009-2409)\n\nIt was discovered that ICC profiles could be identified with\n\"..\" pathnames. If a user were tricked into running a specially\ncrafted applet, a remote attacker could gain information about a local\nsystem. (CVE-2009-3728)\n\nPeter Vreugdenhil discovered multiple flaws in the processing of graphics\nin the AWT library. If a user were tricked into running a specially\ncrafted applet, a remote attacker could crash the application or run\narbitrary code with user privileges. (CVE-2009-3869, CVE-2009-3871)\n\nMultiple flaws were discovered in JPEG and BMP image handling. If a user\nwere tricked into loading a specially crafted image, a remote attacker\ncould crash the application or run arbitrary code with user privileges.\n(CVE-2009-3873, CVE-2009-3874, CVE-2009-3885)\n\nCoda Hale discovered that HMAC-based signatures were not correctly\nvalidated. Remote attackers could bypass certain forms of authentication,\ngranting unexpected access. (CVE-2009-3875)\n\nMultiple flaws were discovered in ASN.1 parsing. A remote attacker\ncould send a specially crafted HTTP stream that would exhaust system\nmemory and lead to a denial of service. (CVE-2009-3876, CVE-2009-3877)\n\nIt was discovered that the graphics configuration subsystem did\nnot correctly handle arrays. If a user were tricked into running\na specially crafted applet, a remote attacker could exploit this\nto crash the application or execute arbitrary code with user\nprivileges. (CVE-2009-3879)\n\nIt was discovered that loggers and Swing did not correctly handle\ncertain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2009-3880, CVE-2009-3882,\nCVE-2009-3883)\n\nIt was discovered that the ClassLoader did not correctly handle certain\noptions. If a user were tricked into running a specially crafted\napplet, a remote attacker could execute arbitrary code with user\nprivileges. (CVE-2009-3881)\n\nIt was discovered that time zone file loading could be used to determine\nthe existence of files on the local system. If a user were tricked into\nrunning a specially crafted applet, private information could be leaked\nto a remote attacker, leading to a loss of privacy. (CVE-2009-3884)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.6","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu12","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"}]},"type":"USN","cves_ids":["CVE-2009-3728","CVE-2009-3883","CVE-2009-3884","CVE-2009-3877","CVE-2009-3880","CVE-2009-3881","CVE-2009-3879","CVE-2009-3874","CVE-2009-3871","CVE-2009-3873","CVE-2009-3876","CVE-2009-3882","CVE-2009-3885","CVE-2009-3875","CVE-2009-3869","CVE-2009-2409"]}]},{"id":"CVE-2009-3873","published":"2009-11-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe JPEG Image Writer in Sun Java SE in JDK and JRE 5.0 before Update 22,\nJDK and JRE 6 before Update 17, and SDK and JRE 1.4.x before 1.4.2_24\nallows remote attackers to gain privileges via a crafted image file,\nrelated to a \"quantization problem,\" aka Bug Id 6862968.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://ubuntu.com/security/notices/USN-859-1","https://www.cve.org/CVERecord?id=CVE-2009-3873"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu12","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b17","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":["USN-859-1"],"notices":[{"id":"USN-859-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-11-12T22:06:57.164261","description":"Dan Kaminsky discovered that SSL certificates signed with MD2 could be\nspoofed given enough time. As a result, an attacker could potentially\ncreate a malicious trusted certificate to impersonate another site. This\nupdate handles this issue by completely disabling MD2 for certificate\nvalidation in OpenJDK. (CVE-2009-2409)\n\nIt was discovered that ICC profiles could be identified with\n\"..\" pathnames. If a user were tricked into running a specially\ncrafted applet, a remote attacker could gain information about a local\nsystem. (CVE-2009-3728)\n\nPeter Vreugdenhil discovered multiple flaws in the processing of graphics\nin the AWT library. If a user were tricked into running a specially\ncrafted applet, a remote attacker could crash the application or run\narbitrary code with user privileges. (CVE-2009-3869, CVE-2009-3871)\n\nMultiple flaws were discovered in JPEG and BMP image handling. If a user\nwere tricked into loading a specially crafted image, a remote attacker\ncould crash the application or run arbitrary code with user privileges.\n(CVE-2009-3873, CVE-2009-3874, CVE-2009-3885)\n\nCoda Hale discovered that HMAC-based signatures were not correctly\nvalidated. Remote attackers could bypass certain forms of authentication,\ngranting unexpected access. (CVE-2009-3875)\n\nMultiple flaws were discovered in ASN.1 parsing. A remote attacker\ncould send a specially crafted HTTP stream that would exhaust system\nmemory and lead to a denial of service. (CVE-2009-3876, CVE-2009-3877)\n\nIt was discovered that the graphics configuration subsystem did\nnot correctly handle arrays. If a user were tricked into running\na specially crafted applet, a remote attacker could exploit this\nto crash the application or execute arbitrary code with user\nprivileges. (CVE-2009-3879)\n\nIt was discovered that loggers and Swing did not correctly handle\ncertain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2009-3880, CVE-2009-3882,\nCVE-2009-3883)\n\nIt was discovered that the ClassLoader did not correctly handle certain\noptions. If a user were tricked into running a specially crafted\napplet, a remote attacker could execute arbitrary code with user\nprivileges. (CVE-2009-3881)\n\nIt was discovered that time zone file loading could be used to determine\nthe existence of files on the local system. If a user were tricked into\nrunning a specially crafted applet, private information could be leaked\nto a remote attacker, leading to a loss of privacy. (CVE-2009-3884)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.6","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu12","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"}]},"type":"USN","cves_ids":["CVE-2009-3728","CVE-2009-3883","CVE-2009-3884","CVE-2009-3877","CVE-2009-3880","CVE-2009-3881","CVE-2009-3879","CVE-2009-3874","CVE-2009-3871","CVE-2009-3873","CVE-2009-3876","CVE-2009-3882","CVE-2009-3885","CVE-2009-3875","CVE-2009-3869","CVE-2009-2409"]}]},{"id":"CVE-2009-3871","published":"2009-11-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in the setBytePixels function in the Abstract\nWindow Toolkit (AWT) in Java Runtime Environment (JRE) in Sun Java SE in\nJDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and\nJRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows\nremote attackers to execute arbitrary code via crafted arguments, aka Bug\nId 6872358.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://ubuntu.com/security/notices/USN-859-1","https://www.cve.org/CVERecord?id=CVE-2009-3871"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu12","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b17","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":["USN-859-1"],"notices":[{"id":"USN-859-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-11-12T22:06:57.164261","description":"Dan Kaminsky discovered that SSL certificates signed with MD2 could be\nspoofed given enough time. As a result, an attacker could potentially\ncreate a malicious trusted certificate to impersonate another site. This\nupdate handles this issue by completely disabling MD2 for certificate\nvalidation in OpenJDK. (CVE-2009-2409)\n\nIt was discovered that ICC profiles could be identified with\n\"..\" pathnames. If a user were tricked into running a specially\ncrafted applet, a remote attacker could gain information about a local\nsystem. (CVE-2009-3728)\n\nPeter Vreugdenhil discovered multiple flaws in the processing of graphics\nin the AWT library. If a user were tricked into running a specially\ncrafted applet, a remote attacker could crash the application or run\narbitrary code with user privileges. (CVE-2009-3869, CVE-2009-3871)\n\nMultiple flaws were discovered in JPEG and BMP image handling. If a user\nwere tricked into loading a specially crafted image, a remote attacker\ncould crash the application or run arbitrary code with user privileges.\n(CVE-2009-3873, CVE-2009-3874, CVE-2009-3885)\n\nCoda Hale discovered that HMAC-based signatures were not correctly\nvalidated. Remote attackers could bypass certain forms of authentication,\ngranting unexpected access. (CVE-2009-3875)\n\nMultiple flaws were discovered in ASN.1 parsing. A remote attacker\ncould send a specially crafted HTTP stream that would exhaust system\nmemory and lead to a denial of service. (CVE-2009-3876, CVE-2009-3877)\n\nIt was discovered that the graphics configuration subsystem did\nnot correctly handle arrays. If a user were tricked into running\na specially crafted applet, a remote attacker could exploit this\nto crash the application or execute arbitrary code with user\nprivileges. (CVE-2009-3879)\n\nIt was discovered that loggers and Swing did not correctly handle\ncertain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2009-3880, CVE-2009-3882,\nCVE-2009-3883)\n\nIt was discovered that the ClassLoader did not correctly handle certain\noptions. If a user were tricked into running a specially crafted\napplet, a remote attacker could execute arbitrary code with user\nprivileges. (CVE-2009-3881)\n\nIt was discovered that time zone file loading could be used to determine\nthe existence of files on the local system. If a user were tricked into\nrunning a specially crafted applet, private information could be leaked\nto a remote attacker, leading to a loss of privacy. (CVE-2009-3884)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.6","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu12","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"}]},"type":"USN","cves_ids":["CVE-2009-3728","CVE-2009-3883","CVE-2009-3884","CVE-2009-3877","CVE-2009-3880","CVE-2009-3881","CVE-2009-3879","CVE-2009-3874","CVE-2009-3871","CVE-2009-3873","CVE-2009-3876","CVE-2009-3882","CVE-2009-3885","CVE-2009-3875","CVE-2009-3869","CVE-2009-2409"]}]},{"id":"CVE-2009-3869","published":"2009-11-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nStack-based buffer overflow in the setDiffICM function in the Abstract\nWindow Toolkit (AWT) in Java Runtime Environment (JRE) in Sun Java SE in\nJDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and\nJRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows\nremote attackers to execute arbitrary code via a crafted argument, aka Bug\nId 6872357.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1","http://java.sun.com/javase/6/webnotes/6u17.html","https://ubuntu.com/security/notices/USN-859-1","https://www.cve.org/CVERecord?id=CVE-2009-3869"],"bugs":[""],"patches":{"sun-java5":[],"sun-java6":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu12","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6b16-1.6.1-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b17~pre2-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b17","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-22","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6.20dlj-0ubuntu1.9.10","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6.20dlj-1ubuntu3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.17","component":null,"pocket":"security"}]}],"notices_ids":["USN-859-1"],"notices":[{"id":"USN-859-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-11-12T22:06:57.164261","description":"Dan Kaminsky discovered that SSL certificates signed with MD2 could be\nspoofed given enough time. As a result, an attacker could potentially\ncreate a malicious trusted certificate to impersonate another site. This\nupdate handles this issue by completely disabling MD2 for certificate\nvalidation in OpenJDK. (CVE-2009-2409)\n\nIt was discovered that ICC profiles could be identified with\n\"..\" pathnames. If a user were tricked into running a specially\ncrafted applet, a remote attacker could gain information about a local\nsystem. (CVE-2009-3728)\n\nPeter Vreugdenhil discovered multiple flaws in the processing of graphics\nin the AWT library. If a user were tricked into running a specially\ncrafted applet, a remote attacker could crash the application or run\narbitrary code with user privileges. (CVE-2009-3869, CVE-2009-3871)\n\nMultiple flaws were discovered in JPEG and BMP image handling. If a user\nwere tricked into loading a specially crafted image, a remote attacker\ncould crash the application or run arbitrary code with user privileges.\n(CVE-2009-3873, CVE-2009-3874, CVE-2009-3885)\n\nCoda Hale discovered that HMAC-based signatures were not correctly\nvalidated. Remote attackers could bypass certain forms of authentication,\ngranting unexpected access. (CVE-2009-3875)\n\nMultiple flaws were discovered in ASN.1 parsing. A remote attacker\ncould send a specially crafted HTTP stream that would exhaust system\nmemory and lead to a denial of service. (CVE-2009-3876, CVE-2009-3877)\n\nIt was discovered that the graphics configuration subsystem did\nnot correctly handle arrays. If a user were tricked into running\na specially crafted applet, a remote attacker could exploit this\nto crash the application or execute arbitrary code with user\nprivileges. (CVE-2009-3879)\n\nIt was discovered that loggers and Swing did not correctly handle\ncertain sensitive objects. If a user were tricked into running a\nspecially crafted applet, private information could be leaked to a remote\nattacker, leading to a loss of privacy. (CVE-2009-3880, CVE-2009-3882,\nCVE-2009-3883)\n\nIt was discovered that the ClassLoader did not correctly handle certain\noptions. If a user were tricked into running a specially crafted\napplet, a remote attacker could execute arbitrary code with user\nprivileges. (CVE-2009-3881)\n\nIt was discovered that time zone file loading could be used to determine\nthe existence of files on the local system. If a user were tricked into\nrunning a specially crafted applet, private information could be leaked\nto a remote attacker, leading to a loss of privacy. (CVE-2009-3884)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.6","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.6"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu12","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu12","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu12"}],"karmic":[{"name":"openjdk-6","version":"6b16-1.6.1-3ubuntu1","description":"","is_source":true},{"name":"icedtea6-plugin","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"},{"name":"openjdk-6-jre","version":"6b16-1.6.1-3ubuntu1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b16-1.6.1-3ubuntu1"}]},"type":"USN","cves_ids":["CVE-2009-3728","CVE-2009-3883","CVE-2009-3884","CVE-2009-3877","CVE-2009-3880","CVE-2009-3881","CVE-2009-3879","CVE-2009-3874","CVE-2009-3871","CVE-2009-3873","CVE-2009-3876","CVE-2009-3882","CVE-2009-3885","CVE-2009-3875","CVE-2009-3869","CVE-2009-2409"]}]}],"offset":73520,"limit":20,"total_results":79316}