{"cves":[{"id":"CVE-2009-2905","published":"2009-09-29T19:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in textbox.c in newt 0.51.5, 0.51.6, and 0.52.2\nallows local users to cause a denial of service (application crash) or\npossibly execute arbitrary code via a request to display a crafted text\ndialog box.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-837-1","https://www.cve.org/CVERecord?id=CVE-2009-2905"],"bugs":[""],"patches":{"newt":[]},"tags":{},"packages":[{"name":"newt","source":"https://ubuntu.com/security/cve?package=newt","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=newt","debian":"https://tracker.debian.org/pkg/newt","statuses":[{"release_codename":"dapper","status":"released","description":"0.51.6-31ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"0.52.2-11.2ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"0.52.2-11.3ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"0.52.2-11.3ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-837-1"],"notices":[{"id":"USN-837-1","title":"Newt vulnerability","summary":"Newt vulnerability","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-09-24T13:05:07.352599","description":"Miroslav Lichvar discovered that Newt incorrectly handled rendering in a\ntext box. An attacker could exploit this and cause a denial of service or\npossibly execute arbitrary code with the privileges of the user invoking\nthe program.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"newt","version":"0.52.2-11.2ubuntu1.1","description":"","is_source":true},{"name":"libnewt0.52","version":"0.52.2-11.2ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/newt","version_link":"https://launchpad.net/ubuntu/+source/newt/0.52.2-11.2ubuntu1.1"}],"dapper":[{"name":"newt","version":"0.51.6-31ubuntu1.1","description":"","is_source":true},{"name":"libnewt0.51","version":"0.51.6-31ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/newt","version_link":"https://launchpad.net/ubuntu/+source/newt/0.51.6-31ubuntu1.1"}],"intrepid":[{"name":"newt","version":"0.52.2-11.3ubuntu1.1","description":"","is_source":true},{"name":"libnewt0.52","version":"0.52.2-11.3ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/newt","version_link":"https://launchpad.net/ubuntu/+source/newt/0.52.2-11.3ubuntu1.1"}],"jaunty":[{"name":"newt","version":"0.52.2-11.3ubuntu3.1","description":"","is_source":true},{"name":"libnewt0.52","version":"0.52.2-11.3ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/newt","version_link":"https://launchpad.net/ubuntu/+source/newt/0.52.2-11.3ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2009-2905"]}]},{"id":"CVE-2009-3431","published":"2009-09-25T23:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nStack consumption vulnerability in Adobe Reader and Acrobat 9.1.3, 9.1.2,\n9.1.1, and earlier 9.x versions; 8.1.6 and earlier 8.x versions; and\npossibly 7.1.4 and earlier 7.x versions allows remote attackers to cause a\ndenial of service (application crash) via a PDF file with a large number of\n[ (open square bracket) characters in the argument to the alert method.\nNOTE: some of these details are obtained from third party information.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3431"],"bugs":[""],"patches":{"acroread":[]},"tags":{},"packages":[{"name":"acroread","source":"https://ubuntu.com/security/cve?package=acroread","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=acroread","debian":"https://tracker.debian.org/pkg/acroread","statuses":[{"release_codename":"dapper","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"9.2-1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"9.2-1intrepid2","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"9.2-1jaunty1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"9.2-1karmic1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3369","published":"2009-09-24T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nCgiUserConfigEdit in BackupPC 3.1.0, when SSH keys and Rsync are in use in\na multi-user environment, does not restrict users from the ClientNameAlias\nfunction, which allows remote authenticated users to read and write\nsensitive files by modifying ClientNameAlias to match another system, then\ninitiating a backup or restore.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"debian patch is incomplete, see debian bug report"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-843-1","https://www.cve.org/CVERecord?id=CVE-2009-3369"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=542218"],"patches":{"backuppc":["vendor: http://patch-tracker.debian.org/patch/misc/view/backuppc/3.1.0-7/lib/BackupPC/CGI/EditConfig.pm"]},"tags":{},"packages":[{"name":"backuppc","source":"https://ubuntu.com/security/cve?package=backuppc","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=backuppc","debian":"https://tracker.debian.org/pkg/backuppc","statuses":[{"release_codename":"dapper","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"3.0.0-4ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"3.1.0-3ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"3.1.0-4ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.1.0-7","component":null,"pocket":"security"}]}],"notices_ids":["USN-843-1"],"notices":[{"id":"USN-843-1","title":"BackupPC vulnerability","summary":"BackupPC vulnerability","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-10-06T17:05:54.762096","description":"It was discovered that BackupPC did not restrict normal users from setting\nthe ClientNameAlias parameter. An authenticated user could exploit this to\ngain access to unauthorized hosts. This update fixed the issue by\npreventing normal users from modifying the ClientNameAlias configuration\nparameter.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"backuppc","version":"3.0.0-4ubuntu1.1","description":"","is_source":true},{"name":"backuppc","version":"3.0.0-4ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/backuppc","version_link":"https://launchpad.net/ubuntu/+source/backuppc/3.0.0-4ubuntu1.1"}],"intrepid":[{"name":"backuppc","version":"3.1.0-3ubuntu2.1","description":"","is_source":true},{"name":"backuppc","version":"3.1.0-3ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/backuppc","version_link":"https://launchpad.net/ubuntu/+source/backuppc/3.1.0-3ubuntu2.1"}],"jaunty":[{"name":"backuppc","version":"3.1.0-4ubuntu1.1","description":"","is_source":true},{"name":"backuppc","version":"3.1.0-4ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/backuppc","version_link":"https://launchpad.net/ubuntu/+source/backuppc/3.1.0-4ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2009-3369"]}]},{"id":"CVE-2009-3294","published":"2009-09-22T10:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe popen API function in TSRM/tsrm_win32.c in PHP before 5.2.11 and 5.3.x\nbefore 5.3.1, when running on certain Windows operating systems, allows\ncontext-dependent attackers to cause a denial of service (crash) via a\ncrafted (1) \"e\" or (2) \"er\" string in the second argument (aka mode),\npossibly related to the _fdopen function in the Microsoft C runtime\nlibrary. NOTE: this might not cross privilege boundaries except in rare\ncases in which the mode argument is accessible to an attacker outside of an\napplication that uses the popen function.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"Windows-only"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.php.net/ChangeLog-5.php#5.2.11","http://www.openwall.com/lists/oss-security/2009/09/20/1","https://www.cve.org/CVERecord?id=CVE-2009-3294"],"bugs":["http://bugs.php.net/bug.php?id=44683"],"patches":{"php5":["upstream: http://svn.php.net/viewvc?view=revision&revision=287779"]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.11","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3293","published":"2009-09-22T10:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the imagecolortransparent function in PHP\nbefore 5.2.11 has unknown impact and attack vectors related to an incorrect\n\"sanity check for the color index.\"","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"php not affected - uses system libgd2\nlibgd2 in hardy is fixed by patch 0002_cvs20070916.patch"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.php.net/ChangeLog-5.php#5.2.11","https://ubuntu.com/security/notices/USN-854-1","https://www.cve.org/CVERecord?id=CVE-2009-3293"],"bugs":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-3293"],"patches":{"php5":["upstream: http://svn.php.net/viewvc?view=revision&revision=287979"],"libgd2":["upstream: http://svn.php.net/viewvc?view=revision&revision=108427","upstream: http://svn.php.net/viewvc?view=revision&revision=153900","upstream: http://svn.php.net/viewvc?view=revision&revision=287979"]},"tags":{},"packages":[{"name":"libgd2","source":"https://ubuntu.com/security/cve?package=libgd2","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=libgd2","debian":"https://tracker.debian.org/pkg/libgd2","statuses":[{"release_codename":"dapper","status":"released","description":"2.0.33-2ubuntu5.4","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"2.0.35.dfsg-3ubuntu2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"2.0.36~rc1~dfsg-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"2.0.36~rc1~dfsg-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"2.0.36~rc1~dfsg-3ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.11","component":null,"pocket":"security"}]}],"notices_ids":["USN-854-1"],"notices":[{"id":"USN-854-1","title":"GD library vulnerabilities","summary":"GD library vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-11-05T19:13:49.978465","description":"Tomas Hoger discovered that the GD library did not properly handle the\nnumber of colors in certain malformed GD images. If a user or automated\nsystem were tricked into processing a specially crafted GD image, an\nattacker could cause a denial of service or possibly execute arbitrary\ncode. (CVE-2009-3546)\n\nIt was discovered that the GD library did not properly handle incorrect\ncolor indexes. An attacker could send specially crafted input to\napplications linked against libgd2 and cause a denial of service or\npossibly execute arbitrary code. This issue only affected Ubuntu 6.06 LTS.\n(CVE-2009-3293)\n\nIt was discovered that the GD library did not properly handle certain\nmalformed GIF images. If a user or automated system were tricked into\nprocessing a specially crafted GIF image, an attacker could cause a denial\nof service. This issue only affected Ubuntu 6.06 LTS. (CVE-2007-3475,\nCVE-2007-3476)\n\nIt was discovered that the GD library did not properly handle large angle\ndegree values. An attacker could send specially crafted input to\napplications linked against libgd2 and cause a denial of service. This\nissue only affected Ubuntu 6.06 LTS. (CVE-2007-3477)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"libgd2","version":"2.0.35.dfsg-3ubuntu2.1","description":"","is_source":true},{"name":"libgd2-xpm","version":"2.0.35.dfsg-3ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.35.dfsg-3ubuntu2.1"},{"name":"libgd2-noxpm","version":"2.0.35.dfsg-3ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.35.dfsg-3ubuntu2.1"}],"dapper":[{"name":"libgd2","version":"2.0.33-2ubuntu5.4","description":"","is_source":true},{"name":"libgd2-xpm","version":"2.0.33-2ubuntu5.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.33-2ubuntu5.4"},{"name":"libgd2-noxpm","version":"2.0.33-2ubuntu5.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.33-2ubuntu5.4"}],"intrepid":[{"name":"libgd2","version":"2.0.36~rc1~dfsg-3ubuntu1.8.10.1","description":"","is_source":true},{"name":"libgd2-xpm","version":"2.0.36~rc1~dfsg-3ubuntu1.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.36~rc1~dfsg-3ubuntu1.8.10.1"},{"name":"libgd2-noxpm","version":"2.0.36~rc1~dfsg-3ubuntu1.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.36~rc1~dfsg-3ubuntu1.8.10.1"}],"jaunty":[{"name":"libgd2","version":"2.0.36~rc1~dfsg-3ubuntu1.9.04.1","description":"","is_source":true},{"name":"libgd2-xpm","version":"2.0.36~rc1~dfsg-3ubuntu1.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.36~rc1~dfsg-3ubuntu1.9.04.1"},{"name":"libgd2-noxpm","version":"2.0.36~rc1~dfsg-3ubuntu1.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.36~rc1~dfsg-3ubuntu1.9.04.1"}],"karmic":[{"name":"libgd2","version":"2.0.36~rc1~dfsg-3ubuntu1.9.10.1","description":"","is_source":true},{"name":"libgd2-xpm","version":"2.0.36~rc1~dfsg-3ubuntu1.9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.36~rc1~dfsg-3ubuntu1.9.10.1"},{"name":"libgd2-noxpm","version":"2.0.36~rc1~dfsg-3ubuntu1.9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libgd2","version_link":"https://launchpad.net/ubuntu/+source/libgd2/2.0.36~rc1~dfsg-3ubuntu1.9.10.1"}]},"type":"USN","cves_ids":["CVE-2007-3476","CVE-2007-3475","CVE-2009-3546","CVE-2009-3293","CVE-2007-3477"]}]},{"id":"CVE-2009-3289","published":"2009-09-22T10:30:00","updated_at":"2025-08-25T19:49:22.686809+00:00","description":"\nThe g_file_copy function in glib 2.0 sets the permissions of a target file\nto the permissions of a symbolic link (777), which allows user-assisted\nlocal users to modify files of other users, as demonstrated by using\nNautilus to modify the permissions of the user home directory.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2009/09/08/8","https://ubuntu.com/security/notices/USN-841-1","https://www.cve.org/CVERecord?id=CVE-2009-3289"],"bugs":["https://bugzilla.gnome.org/show_bug.cgi?id=593406","https://bugs.launchpad.net/ubuntu/+source/glib2.0/+bug/418135"],"patches":{"glib2.0":[]},"tags":{},"packages":[{"name":"glib2.0","source":"https://ubuntu.com/security/cve?package=glib2.0","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=glib2.0","debian":"https://tracker.debian.org/pkg/glib2.0","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.16.6-0ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.18.2-0ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.20.1-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-841-1"],"notices":[{"id":"USN-841-1","title":"GLib vulnerability","summary":"GLib vulnerability","instructions":"After a standard system upgrade you need to restart your session to effect\nthe necessary changes.\n","references":[],"published":"2009-10-05T19:47:18.791232","description":"Arand Nash discovered that applications linked to GLib (e.g. Nautilus)\ndid not correctly copy symlinks.  If a user copied symlinks with GLib,\nthe symlink target files would become world-writable, allowing local\nattackers to gain access to potentially sensitive information.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"glib2.0","version":"2.16.6-0ubuntu1.2","description":"","is_source":true},{"name":"libglib2.0-0","version":"2.16.6-0ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/glib2.0","version_link":"https://launchpad.net/ubuntu/+source/glib2.0/2.16.6-0ubuntu1.2"}],"intrepid":[{"name":"glib2.0","version":"2.18.2-0ubuntu2.2","description":"","is_source":true},{"name":"libglib2.0-0","version":"2.18.2-0ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/glib2.0","version_link":"https://launchpad.net/ubuntu/+source/glib2.0/2.18.2-0ubuntu2.2"}],"jaunty":[{"name":"glib2.0","version":"2.20.1-0ubuntu2.1","description":"","is_source":true},{"name":"libglib2.0-0","version":"2.20.1-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/glib2.0","version_link":"https://launchpad.net/ubuntu/+source/glib2.0/2.20.1-0ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2009-3289"]}]},{"id":"CVE-2009-3288","published":"2009-09-22T10:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe sg_build_indirect function in drivers/scsi/sg.c in Linux kernel\n2.6.28-rc1 through 2.6.31-rc8 uses an incorrect variable when accessing an\narray, which allows local users to cause a denial of service (kernel OOPS\nand NULL pointer dereference), as demonstrated by using xcdroast to\nduplicate a CD.  NOTE: this is only exploitable by users who can open the\ncdrom device.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2009/09/03/4","https://ubuntu.com/security/notices/USN-852-1","https://www.cve.org/CVERecord?id=CVE-2009-3288"],"bugs":[""],"patches":{"linux-source-2.6.15":[],"linux":["proposed: http://lkml.org/lkml/2009/9/3/107"]},"tags":{},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.6.28-16.55","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.31","component":null,"pocket":"security"}]},{"name":"linux-source-2.6.15","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.15","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.15","debian":"https://tracker.debian.org/pkg/linux-source-2.6.15","statuses":[{"release_codename":"upstream","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-852-1"],"notices":[{"id":"USN-852-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"After a standard system upgrade you need to reboot your computer to\neffect the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed. If\nyou use linux-restricted-modules, you have to update that package as\nwell to get modules which work with the new kernel version. Unless you\nmanually uninstalled the standard kernel metapackages (e.g. linux-generic,\nlinux-server, linux-powerpc), a standard system upgrade will automatically\nperform this as well.\n","references":[],"published":"2009-10-22T00:48:54.233082","description":"Solar Designer discovered that the z90crypt driver did not correctly\ncheck capabilities.  A local attacker could exploit this to shut down\nthe device, leading to a denial of service.  Only affected Ubuntu 6.06.\n(CVE-2009-1883)\n\nMichael Buesch discovered that the SGI GRU driver did not correctly check\nthe length when setting options.  A local attacker could exploit this\nto write to the kernel stack, leading to root privilege escalation or\na denial of service.  Only affected Ubuntu 8.10 and 9.04. (CVE-2009-2584)\n\nIt was discovered that SELinux did not fully implement the mmap_min_addr\nrestrictions.  A local attacker could exploit this to allocate the\nNULL memory page which could lead to further attacks against kernel\nNULL-dereference vulnerabilities.  Ubuntu 6.06 was not affected.\n(CVE-2009-2695)\n\nCagri Coltekin discovered that the UDP stack did not correctly handle\ncertain flags.  A local user could send specially crafted commands and\ntraffic to gain root privileges or crash the systeam, leading to a denial\nof service.  Only affected Ubuntu 6.06. (CVE-2009-2698)\n\nHiroshi Shimamoto discovered that monotonic timers did not correctly\nvalidate parameters.  A local user could make a specially crafted timer\nrequest to gain root privileges or crash the system, leading to a denial\nof service.  Only affected Ubuntu 9.04. (CVE-2009-2767)\n\nMichael Buesch discovered that the HPPA ISA EEPROM driver did not\ncorrectly validate positions.  A local user could make a specially crafted\nrequest to gain root privileges or crash the system, leading to a denial\nof service. (CVE-2009-2846)\n\nUlrich Drepper discovered that kernel signal stacks were not being\ncorrectly padded on 64-bit systems.  A local attacker could send specially\ncrafted calls to expose 4 bytes of kernel stack memory, leading to a\nloss of privacy. (CVE-2009-2847)\n\nJens Rosenboom discovered that the clone method did not correctly clear\ncertain fields.  A local attacker could exploit this to gain privileges\nor crash the system, leading to a denial of service. (CVE-2009-2848)\n\nIt was discovered that the MD driver did not check certain sysfs files.\nA local attacker with write access to /sys could exploit this to cause\na system crash, leading to a denial of service.  Ubuntu 6.06 was not\naffected. (CVE-2009-2849)\n\nMark Smith discovered that the AppleTalk stack did not correctly\nmanage memory.  A remote attacker could send specially crafted traffic\nto cause the system to consume all available memory, leading to a denial\nof service. (CVE-2009-2903)\n\nLoïc Minier discovered that eCryptfs did not correctly handle writing\nto certain deleted files.  A local attacker could exploit this to gain\nroot privileges or crash the system, leading to a denial of service.\nUbuntu 6.06 was not affected. (CVE-2009-2908)\n\nIt was discovered that the LLC, AppleTalk, IR, EConet, Netrom, and\nROSE network stacks did not correctly initialize their data structures.\nA local attacker could make specially crafted calls to read kernel memory,\nleading to a loss of privacy.  (CVE-2009-3001, CVE-2009-3002)\n\nIt was discovered that the randomization used for Address Space Layout\nRandomization was predictable within a small window of time.  A local\nattacker could exploit this to leverage further attacks that require\nknowledge of userspace memory layouts. (CVE-2009-3238)\n\nEric Paris discovered that NFSv4 did not correctly handle file creation\nfailures.  An attacker with write access to an NFSv4 share could exploit\nthis to create files with arbitrary mode bits, leading to privilege\nescalation or a loss of privacy. (CVE-2009-3286)\n\nBob Tracy discovered that the SCSI generic driver did not correctly use\nthe right index for array access.  A local attacker with write access\nto a CDR could exploit this to crash the system, leading to a denial\nof service.  Only Ubuntu 9.04 was affected. (CVE-2009-3288)\n\nJan Kiszka discovered that KVM did not correctly validate certain\nhypercalls.  A local unprivileged attacker in a virtual guest could exploit\nthis to crash the guest kernel, leading to a denial of service. Ubuntu\n6.06 was not affected. (CVE-2009-3290)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"linux","version":"2.6.24-25.63","description":"","is_source":true},{"name":"linux-image-2.6.24-25-powerpc64-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-mckinley","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-virtual","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-hppa64","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-sparc64-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-generic","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-lpia","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-powerpc-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-xen","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-hppa32","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-rt","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-386","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-powerpc","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-openvz","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-lpiacompat","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-itanium","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-sparc64","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-server","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"}],"dapper":[{"name":"linux-source-2.6.15","version":"2.6.15-55.80","description":"","is_source":true},{"name":"linux-image-2.6.15-55-hppa64","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-mckinley","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa32-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-686","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-k8","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-server","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-386","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-sparc64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-k7","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-sparc64","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-server","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa32","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-mckinley-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-server-bigiron","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-itanium-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-xeon","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-generic","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-itanium","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"}],"intrepid":[{"name":"linux","version":"2.6.27-15.43","description":"","is_source":true},{"name":"linux-image-2.6.27-15-generic","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"},{"name":"linux-image-2.6.27-15-virtual","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"},{"name":"linux-image-2.6.27-15-server","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"}],"jaunty":[{"name":"linux","version":"2.6.28-16.55","description":"","is_source":true},{"name":"linux-image-2.6.28-16-virtual","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-server","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-ixp4xx","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-lpia","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-versatile","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-iop32x","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-generic","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-imx51","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"}]},"type":"USN","cves_ids":["CVE-2009-3238","CVE-2009-3286","CVE-2009-2848","CVE-2009-3288","CVE-2009-3290","CVE-2009-2698","CVE-2009-3002","CVE-2009-1883","CVE-2009-2903","CVE-2009-2849","CVE-2009-2847","CVE-2009-2584","CVE-2009-2767","CVE-2009-2908","CVE-2009-2846","CVE-2009-2695","CVE-2009-3001"]}]},{"id":"CVE-2009-3286","published":"2009-09-22T10:30:00","updated_at":"2026-07-04T07:30:24.656768+00:00","description":"\nNFSv4 in the Linux kernel 2.6.18, and possibly other versions, does not\nproperly clean up an inode when an O_EXCL create fails, which causes files\nto be created with insecure settings such as setuid bits, and possibly\nallows local users to gain privileges, related to the execution of the\ndo_open_permission function even when a create fails.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2009/09/21/2","https://ubuntu.com/security/notices/USN-852-1","https://www.cve.org/CVERecord?id=CVE-2009-3286"],"bugs":["https://bugzilla.redhat.com/show_bug.cgi?id=524520"],"patches":{"linux-source-2.6.15":[],"linux":["break-fix: - 81ac95c5569d7a60ab5db6c1ccec56c12b3ebcb5"]},"tags":{"linux":["binary-exclude:linux-libc-dev"]},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.6.24-25.63","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.6.27-15.43","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.6.28-16.55","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.19~rc6","component":null,"pocket":"security"}]},{"name":"linux-source-2.6.15","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.15","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.15","debian":"https://tracker.debian.org/pkg/linux-source-2.6.15","statuses":[{"release_codename":"dapper","status":"released","description":"2.6.15-55.80","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.19~rc6","component":null,"pocket":"security"}]}],"notices_ids":["USN-852-1"],"notices":[{"id":"USN-852-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"After a standard system upgrade you need to reboot your computer to\neffect the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed. If\nyou use linux-restricted-modules, you have to update that package as\nwell to get modules which work with the new kernel version. Unless you\nmanually uninstalled the standard kernel metapackages (e.g. linux-generic,\nlinux-server, linux-powerpc), a standard system upgrade will automatically\nperform this as well.\n","references":[],"published":"2009-10-22T00:48:54.233082","description":"Solar Designer discovered that the z90crypt driver did not correctly\ncheck capabilities.  A local attacker could exploit this to shut down\nthe device, leading to a denial of service.  Only affected Ubuntu 6.06.\n(CVE-2009-1883)\n\nMichael Buesch discovered that the SGI GRU driver did not correctly check\nthe length when setting options.  A local attacker could exploit this\nto write to the kernel stack, leading to root privilege escalation or\na denial of service.  Only affected Ubuntu 8.10 and 9.04. (CVE-2009-2584)\n\nIt was discovered that SELinux did not fully implement the mmap_min_addr\nrestrictions.  A local attacker could exploit this to allocate the\nNULL memory page which could lead to further attacks against kernel\nNULL-dereference vulnerabilities.  Ubuntu 6.06 was not affected.\n(CVE-2009-2695)\n\nCagri Coltekin discovered that the UDP stack did not correctly handle\ncertain flags.  A local user could send specially crafted commands and\ntraffic to gain root privileges or crash the systeam, leading to a denial\nof service.  Only affected Ubuntu 6.06. (CVE-2009-2698)\n\nHiroshi Shimamoto discovered that monotonic timers did not correctly\nvalidate parameters.  A local user could make a specially crafted timer\nrequest to gain root privileges or crash the system, leading to a denial\nof service.  Only affected Ubuntu 9.04. (CVE-2009-2767)\n\nMichael Buesch discovered that the HPPA ISA EEPROM driver did not\ncorrectly validate positions.  A local user could make a specially crafted\nrequest to gain root privileges or crash the system, leading to a denial\nof service. (CVE-2009-2846)\n\nUlrich Drepper discovered that kernel signal stacks were not being\ncorrectly padded on 64-bit systems.  A local attacker could send specially\ncrafted calls to expose 4 bytes of kernel stack memory, leading to a\nloss of privacy. (CVE-2009-2847)\n\nJens Rosenboom discovered that the clone method did not correctly clear\ncertain fields.  A local attacker could exploit this to gain privileges\nor crash the system, leading to a denial of service. (CVE-2009-2848)\n\nIt was discovered that the MD driver did not check certain sysfs files.\nA local attacker with write access to /sys could exploit this to cause\na system crash, leading to a denial of service.  Ubuntu 6.06 was not\naffected. (CVE-2009-2849)\n\nMark Smith discovered that the AppleTalk stack did not correctly\nmanage memory.  A remote attacker could send specially crafted traffic\nto cause the system to consume all available memory, leading to a denial\nof service. (CVE-2009-2903)\n\nLoïc Minier discovered that eCryptfs did not correctly handle writing\nto certain deleted files.  A local attacker could exploit this to gain\nroot privileges or crash the system, leading to a denial of service.\nUbuntu 6.06 was not affected. (CVE-2009-2908)\n\nIt was discovered that the LLC, AppleTalk, IR, EConet, Netrom, and\nROSE network stacks did not correctly initialize their data structures.\nA local attacker could make specially crafted calls to read kernel memory,\nleading to a loss of privacy.  (CVE-2009-3001, CVE-2009-3002)\n\nIt was discovered that the randomization used for Address Space Layout\nRandomization was predictable within a small window of time.  A local\nattacker could exploit this to leverage further attacks that require\nknowledge of userspace memory layouts. (CVE-2009-3238)\n\nEric Paris discovered that NFSv4 did not correctly handle file creation\nfailures.  An attacker with write access to an NFSv4 share could exploit\nthis to create files with arbitrary mode bits, leading to privilege\nescalation or a loss of privacy. (CVE-2009-3286)\n\nBob Tracy discovered that the SCSI generic driver did not correctly use\nthe right index for array access.  A local attacker with write access\nto a CDR could exploit this to crash the system, leading to a denial\nof service.  Only Ubuntu 9.04 was affected. (CVE-2009-3288)\n\nJan Kiszka discovered that KVM did not correctly validate certain\nhypercalls.  A local unprivileged attacker in a virtual guest could exploit\nthis to crash the guest kernel, leading to a denial of service. Ubuntu\n6.06 was not affected. (CVE-2009-3290)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"linux","version":"2.6.24-25.63","description":"","is_source":true},{"name":"linux-image-2.6.24-25-powerpc64-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-mckinley","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-virtual","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-hppa64","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-sparc64-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-generic","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-lpia","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-powerpc-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-xen","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-hppa32","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-rt","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-386","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-powerpc","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-openvz","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-lpiacompat","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-itanium","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-sparc64","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-server","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"}],"dapper":[{"name":"linux-source-2.6.15","version":"2.6.15-55.80","description":"","is_source":true},{"name":"linux-image-2.6.15-55-hppa64","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-mckinley","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa32-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-686","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-k8","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-server","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-386","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-sparc64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-k7","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-sparc64","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-server","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa32","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-mckinley-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-server-bigiron","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-itanium-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-xeon","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-generic","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-itanium","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"}],"intrepid":[{"name":"linux","version":"2.6.27-15.43","description":"","is_source":true},{"name":"linux-image-2.6.27-15-generic","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"},{"name":"linux-image-2.6.27-15-virtual","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"},{"name":"linux-image-2.6.27-15-server","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"}],"jaunty":[{"name":"linux","version":"2.6.28-16.55","description":"","is_source":true},{"name":"linux-image-2.6.28-16-virtual","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-server","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-ixp4xx","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-lpia","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-versatile","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-iop32x","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-generic","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-imx51","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"}]},"type":"USN","cves_ids":["CVE-2009-3238","CVE-2009-3286","CVE-2009-2848","CVE-2009-3288","CVE-2009-3290","CVE-2009-2698","CVE-2009-3002","CVE-2009-1883","CVE-2009-2903","CVE-2009-2849","CVE-2009-2847","CVE-2009-2584","CVE-2009-2767","CVE-2009-2908","CVE-2009-2846","CVE-2009-2695","CVE-2009-3001"]}]},{"id":"CVE-2009-3292","published":"2009-09-22T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in PHP before 5.2.11, and 5.3.x before 5.3.1, has\nunknown impact and attack vectors related to \"missing sanity checks around\nexif processing.\"","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"denial of service"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.php.net/ChangeLog-5.php#5.2.11","https://ubuntu.com/security/notices/USN-862-1","https://www.cve.org/CVERecord?id=CVE-2009-3292"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/php5/+bug/446313","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-3292"],"patches":{"php5":["upstream: http://svn.php.net/viewvc?view=revision&revision=287371"]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"dapper","status":"released","description":"5.1.2-1ubuntu3.17","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"5.2.4-2ubuntu5.9","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"5.2.6-2ubuntu4.5","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"5.2.6.dfsg.1-3ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"5.2.10.dfsg.1-2ubuntu6.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.11","component":null,"pocket":"security"}]}],"notices_ids":["USN-862-1"],"notices":[{"id":"USN-862-1","title":"PHP vulnerabilities","summary":"PHP vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-11-26T20:04:36.781310","description":"Maksymilian Arciemowicz discovered that PHP did not properly validate\narguments to the dba_replace function. If a script passed untrusted input\nto the dba_replace function, an attacker could truncate the database. This\nissue only applied to Ubuntu 6.06 LTS, 8.04 LTS, and 8.10. (CVE-2008-7068)\n\nIt was discovered that PHP's php_openssl_apply_verification_policy\nfunction did not correctly handle SSL certificates with zero bytes in the\nCommon Name. A remote attacker could exploit this to perform a \nmachine-in-the-middle attack to view sensitive information or alter\nencrypted communications. (CVE-2009-3291)\n\nIt was discovered that PHP did not properly handle certain malformed images\nwhen being parsed by the Exif module. A remote attacker could exploit this\nflaw and cause the PHP server to crash, resulting in a denial of service.\n(CVE-2009-3292)\n\nGrzegorz Stachowiak discovered that PHP did not properly enforce\nrestrictions in the tempnam function. An attacker could exploit this issue\nto bypass safe_mode restrictions. (CVE-2009-3557)\n\nGrzegorz Stachowiak discovered that PHP did not properly enforce\nrestrictions in the posix_mkfifo function. An attacker could exploit this\nissue to bypass open_basedir restrictions. (CVE-2009-3558)\n\nBogdan Calin discovered that PHP did not limit the number of temporary\nfiles created when handling multipart/form-data POST requests. A remote\nattacker could exploit this flaw and cause the PHP server to consume all\navailable resources, resulting in a denial of service. (CVE-2009-4017)\n\nATTENTION: This update changes previous PHP behaviour by limiting the\nnumber of files in a POST request to 50. This may be increased by adding a\n\"max_file_uploads\" directive to the php.ini configuration file.\n\nIt was discovered that PHP did not properly enforce restrictions in the\nproc_open function. An attacker could exploit this issue to bypass\nsafe_mode_protected_env_vars restrictions and possibly execute arbitrary\ncode with application privileges. (CVE-2009-4018)\n","is_hidden":false,"release_packages":{"dapper":[{"name":"php5","version":"5.1.2-1ubuntu3.17","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.1.2-1ubuntu3.17","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.1.2-1ubuntu3.17"},{"name":"php5-cgi","version":"5.1.2-1ubuntu3.17","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.1.2-1ubuntu3.17"},{"name":"php5-cli","version":"5.1.2-1ubuntu3.17","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.1.2-1ubuntu3.17"}],"hardy":[{"name":"php5","version":"5.2.4-2ubuntu5.9","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.2.4-2ubuntu5.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.4-2ubuntu5.9"},{"name":"php5-cgi","version":"5.2.4-2ubuntu5.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.4-2ubuntu5.9"},{"name":"php5-cli","version":"5.2.4-2ubuntu5.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.4-2ubuntu5.9"}],"intrepid":[{"name":"php5","version":"5.2.6-2ubuntu4.5","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.2.6-2ubuntu4.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6-2ubuntu4.5"},{"name":"php5-cgi","version":"5.2.6-2ubuntu4.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6-2ubuntu4.5"},{"name":"php5-cli","version":"5.2.6-2ubuntu4.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6-2ubuntu4.5"}],"jaunty":[{"name":"php5","version":"5.2.6.dfsg.1-3ubuntu4.4","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.2.6.dfsg.1-3ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6.dfsg.1-3ubuntu4.4"},{"name":"php5-cgi","version":"5.2.6.dfsg.1-3ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6.dfsg.1-3ubuntu4.4"},{"name":"php5-cli","version":"5.2.6.dfsg.1-3ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6.dfsg.1-3ubuntu4.4"}],"karmic":[{"name":"php5","version":"5.2.10.dfsg.1-2ubuntu6.3","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.2.10.dfsg.1-2ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.10.dfsg.1-2ubuntu6.3"},{"name":"php5-cgi","version":"5.2.10.dfsg.1-2ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.10.dfsg.1-2ubuntu6.3"},{"name":"php5-cli","version":"5.2.10.dfsg.1-2ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.10.dfsg.1-2ubuntu6.3"}]},"type":"USN","cves_ids":["CVE-2009-4018","CVE-2009-3557","CVE-2009-3292","CVE-2009-3558","CVE-2009-4017","CVE-2008-7068","CVE-2009-3291"]}]},{"id":"CVE-2009-3291","published":"2009-09-22T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe php_openssl_apply_verification_policy function in PHP before 5.2.11\ndoes not properly perform certificate validation, which has unknown impact\nand attack vectors, probably related to an ability to spoof certificates.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"NUL ('\\0') character embedded in X509 certificate's CommonName or subjectAltName\ngiven RH's analysis of this issue, reprioritizing as \"low\""}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.php.net/ChangeLog-5.php#5.2.11","https://ubuntu.com/security/notices/USN-862-1","https://www.cve.org/CVERecord?id=CVE-2009-3291"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/php5/+bug/446313","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-3291"],"patches":{"php5":["upstream: http://svn.php.net/viewvc?view=revision&revision=288329"]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"dapper","status":"released","description":"5.1.2-1ubuntu3.17","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"5.2.4-2ubuntu5.9","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"5.2.6-2ubuntu4.5","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"5.2.6.dfsg.1-3ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"5.2.10.dfsg.1-2ubuntu6.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.11","component":null,"pocket":"security"}]}],"notices_ids":["USN-862-1"],"notices":[{"id":"USN-862-1","title":"PHP vulnerabilities","summary":"PHP vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-11-26T20:04:36.781310","description":"Maksymilian Arciemowicz discovered that PHP did not properly validate\narguments to the dba_replace function. If a script passed untrusted input\nto the dba_replace function, an attacker could truncate the database. This\nissue only applied to Ubuntu 6.06 LTS, 8.04 LTS, and 8.10. (CVE-2008-7068)\n\nIt was discovered that PHP's php_openssl_apply_verification_policy\nfunction did not correctly handle SSL certificates with zero bytes in the\nCommon Name. A remote attacker could exploit this to perform a \nmachine-in-the-middle attack to view sensitive information or alter\nencrypted communications. (CVE-2009-3291)\n\nIt was discovered that PHP did not properly handle certain malformed images\nwhen being parsed by the Exif module. A remote attacker could exploit this\nflaw and cause the PHP server to crash, resulting in a denial of service.\n(CVE-2009-3292)\n\nGrzegorz Stachowiak discovered that PHP did not properly enforce\nrestrictions in the tempnam function. An attacker could exploit this issue\nto bypass safe_mode restrictions. (CVE-2009-3557)\n\nGrzegorz Stachowiak discovered that PHP did not properly enforce\nrestrictions in the posix_mkfifo function. An attacker could exploit this\nissue to bypass open_basedir restrictions. (CVE-2009-3558)\n\nBogdan Calin discovered that PHP did not limit the number of temporary\nfiles created when handling multipart/form-data POST requests. A remote\nattacker could exploit this flaw and cause the PHP server to consume all\navailable resources, resulting in a denial of service. (CVE-2009-4017)\n\nATTENTION: This update changes previous PHP behaviour by limiting the\nnumber of files in a POST request to 50. This may be increased by adding a\n\"max_file_uploads\" directive to the php.ini configuration file.\n\nIt was discovered that PHP did not properly enforce restrictions in the\nproc_open function. An attacker could exploit this issue to bypass\nsafe_mode_protected_env_vars restrictions and possibly execute arbitrary\ncode with application privileges. (CVE-2009-4018)\n","is_hidden":false,"release_packages":{"dapper":[{"name":"php5","version":"5.1.2-1ubuntu3.17","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.1.2-1ubuntu3.17","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.1.2-1ubuntu3.17"},{"name":"php5-cgi","version":"5.1.2-1ubuntu3.17","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.1.2-1ubuntu3.17"},{"name":"php5-cli","version":"5.1.2-1ubuntu3.17","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.1.2-1ubuntu3.17"}],"hardy":[{"name":"php5","version":"5.2.4-2ubuntu5.9","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.2.4-2ubuntu5.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.4-2ubuntu5.9"},{"name":"php5-cgi","version":"5.2.4-2ubuntu5.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.4-2ubuntu5.9"},{"name":"php5-cli","version":"5.2.4-2ubuntu5.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.4-2ubuntu5.9"}],"intrepid":[{"name":"php5","version":"5.2.6-2ubuntu4.5","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.2.6-2ubuntu4.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6-2ubuntu4.5"},{"name":"php5-cgi","version":"5.2.6-2ubuntu4.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6-2ubuntu4.5"},{"name":"php5-cli","version":"5.2.6-2ubuntu4.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6-2ubuntu4.5"}],"jaunty":[{"name":"php5","version":"5.2.6.dfsg.1-3ubuntu4.4","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.2.6.dfsg.1-3ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6.dfsg.1-3ubuntu4.4"},{"name":"php5-cgi","version":"5.2.6.dfsg.1-3ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6.dfsg.1-3ubuntu4.4"},{"name":"php5-cli","version":"5.2.6.dfsg.1-3ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.6.dfsg.1-3ubuntu4.4"}],"karmic":[{"name":"php5","version":"5.2.10.dfsg.1-2ubuntu6.3","description":"","is_source":true},{"name":"libapache2-mod-php5","version":"5.2.10.dfsg.1-2ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.10.dfsg.1-2ubuntu6.3"},{"name":"php5-cgi","version":"5.2.10.dfsg.1-2ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.10.dfsg.1-2ubuntu6.3"},{"name":"php5-cli","version":"5.2.10.dfsg.1-2ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.2.10.dfsg.1-2ubuntu6.3"}]},"type":"USN","cves_ids":["CVE-2009-4018","CVE-2009-3557","CVE-2009-3292","CVE-2009-3558","CVE-2009-4017","CVE-2008-7068","CVE-2009-3291"]}]},{"id":"CVE-2009-3290","published":"2009-09-22T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe kvm_emulate_hypercall function in arch/x86/kvm/x86.c in KVM in the\nLinux kernel 2.6.25-rc1, and other versions before 2.6.31, when running on\nx86 systems, does not prevent access to MMU hypercalls from ring 0, which\nallows local guest OS users to cause a denial of service (guest kernel\ncrash) and read or write guest kernel memory via unspecified \"random\naddresses.\"","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2009/09/18/1","https://ubuntu.com/security/notices/USN-852-1","https://www.cve.org/CVERecord?id=CVE-2009-3290"],"bugs":[""],"patches":{"linux-source-2.6.15":[],"linux":["upstream: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=07708c4af1346ab1521b26a202f438366b7bcffd"]},"tags":{},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.6.24-25.63","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.6.27-15.43","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.6.28-16.55","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.32~rc1","component":null,"pocket":"security"}]},{"name":"linux-source-2.6.15","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.15","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.15","debian":"https://tracker.debian.org/pkg/linux-source-2.6.15","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.32~rc1","component":null,"pocket":"security"}]}],"notices_ids":["USN-852-1"],"notices":[{"id":"USN-852-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"After a standard system upgrade you need to reboot your computer to\neffect the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed. If\nyou use linux-restricted-modules, you have to update that package as\nwell to get modules which work with the new kernel version. Unless you\nmanually uninstalled the standard kernel metapackages (e.g. linux-generic,\nlinux-server, linux-powerpc), a standard system upgrade will automatically\nperform this as well.\n","references":[],"published":"2009-10-22T00:48:54.233082","description":"Solar Designer discovered that the z90crypt driver did not correctly\ncheck capabilities.  A local attacker could exploit this to shut down\nthe device, leading to a denial of service.  Only affected Ubuntu 6.06.\n(CVE-2009-1883)\n\nMichael Buesch discovered that the SGI GRU driver did not correctly check\nthe length when setting options.  A local attacker could exploit this\nto write to the kernel stack, leading to root privilege escalation or\na denial of service.  Only affected Ubuntu 8.10 and 9.04. (CVE-2009-2584)\n\nIt was discovered that SELinux did not fully implement the mmap_min_addr\nrestrictions.  A local attacker could exploit this to allocate the\nNULL memory page which could lead to further attacks against kernel\nNULL-dereference vulnerabilities.  Ubuntu 6.06 was not affected.\n(CVE-2009-2695)\n\nCagri Coltekin discovered that the UDP stack did not correctly handle\ncertain flags.  A local user could send specially crafted commands and\ntraffic to gain root privileges or crash the systeam, leading to a denial\nof service.  Only affected Ubuntu 6.06. (CVE-2009-2698)\n\nHiroshi Shimamoto discovered that monotonic timers did not correctly\nvalidate parameters.  A local user could make a specially crafted timer\nrequest to gain root privileges or crash the system, leading to a denial\nof service.  Only affected Ubuntu 9.04. (CVE-2009-2767)\n\nMichael Buesch discovered that the HPPA ISA EEPROM driver did not\ncorrectly validate positions.  A local user could make a specially crafted\nrequest to gain root privileges or crash the system, leading to a denial\nof service. (CVE-2009-2846)\n\nUlrich Drepper discovered that kernel signal stacks were not being\ncorrectly padded on 64-bit systems.  A local attacker could send specially\ncrafted calls to expose 4 bytes of kernel stack memory, leading to a\nloss of privacy. (CVE-2009-2847)\n\nJens Rosenboom discovered that the clone method did not correctly clear\ncertain fields.  A local attacker could exploit this to gain privileges\nor crash the system, leading to a denial of service. (CVE-2009-2848)\n\nIt was discovered that the MD driver did not check certain sysfs files.\nA local attacker with write access to /sys could exploit this to cause\na system crash, leading to a denial of service.  Ubuntu 6.06 was not\naffected. (CVE-2009-2849)\n\nMark Smith discovered that the AppleTalk stack did not correctly\nmanage memory.  A remote attacker could send specially crafted traffic\nto cause the system to consume all available memory, leading to a denial\nof service. (CVE-2009-2903)\n\nLoïc Minier discovered that eCryptfs did not correctly handle writing\nto certain deleted files.  A local attacker could exploit this to gain\nroot privileges or crash the system, leading to a denial of service.\nUbuntu 6.06 was not affected. (CVE-2009-2908)\n\nIt was discovered that the LLC, AppleTalk, IR, EConet, Netrom, and\nROSE network stacks did not correctly initialize their data structures.\nA local attacker could make specially crafted calls to read kernel memory,\nleading to a loss of privacy.  (CVE-2009-3001, CVE-2009-3002)\n\nIt was discovered that the randomization used for Address Space Layout\nRandomization was predictable within a small window of time.  A local\nattacker could exploit this to leverage further attacks that require\nknowledge of userspace memory layouts. (CVE-2009-3238)\n\nEric Paris discovered that NFSv4 did not correctly handle file creation\nfailures.  An attacker with write access to an NFSv4 share could exploit\nthis to create files with arbitrary mode bits, leading to privilege\nescalation or a loss of privacy. (CVE-2009-3286)\n\nBob Tracy discovered that the SCSI generic driver did not correctly use\nthe right index for array access.  A local attacker with write access\nto a CDR could exploit this to crash the system, leading to a denial\nof service.  Only Ubuntu 9.04 was affected. (CVE-2009-3288)\n\nJan Kiszka discovered that KVM did not correctly validate certain\nhypercalls.  A local unprivileged attacker in a virtual guest could exploit\nthis to crash the guest kernel, leading to a denial of service. Ubuntu\n6.06 was not affected. (CVE-2009-3290)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"linux","version":"2.6.24-25.63","description":"","is_source":true},{"name":"linux-image-2.6.24-25-powerpc64-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-mckinley","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-virtual","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-hppa64","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-sparc64-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-generic","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-lpia","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-powerpc-smp","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-xen","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-hppa32","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-rt","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-386","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-powerpc","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-openvz","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-lpiacompat","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-itanium","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-sparc64","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"},{"name":"linux-image-2.6.24-25-server","version":"2.6.24-25.63","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.24-25.63"}],"dapper":[{"name":"linux-source-2.6.15","version":"2.6.15-55.80","description":"","is_source":true},{"name":"linux-image-2.6.15-55-hppa64","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-mckinley","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa32-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-686","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-k8","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-server","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-386","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-sparc64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-k7","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-sparc64","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-server","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa32","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-mckinley-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-server-bigiron","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-itanium-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-xeon","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-powerpc","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-amd64-generic","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-hppa64-smp","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"},{"name":"linux-image-2.6.15-55-itanium","version":"2.6.15-55.80","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15","version_link":"https://launchpad.net/ubuntu/+source/linux-source-2.6.15/2.6.15-55.80"}],"intrepid":[{"name":"linux","version":"2.6.27-15.43","description":"","is_source":true},{"name":"linux-image-2.6.27-15-generic","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"},{"name":"linux-image-2.6.27-15-virtual","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"},{"name":"linux-image-2.6.27-15-server","version":"2.6.27-15.43","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.27-15.43"}],"jaunty":[{"name":"linux","version":"2.6.28-16.55","description":"","is_source":true},{"name":"linux-image-2.6.28-16-virtual","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-server","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-ixp4xx","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-lpia","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-versatile","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-iop32x","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-generic","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"},{"name":"linux-image-2.6.28-16-imx51","version":"2.6.28-16.55","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/2.6.28-16.55"}]},"type":"USN","cves_ids":["CVE-2009-3238","CVE-2009-3286","CVE-2009-2848","CVE-2009-3288","CVE-2009-3290","CVE-2009-2698","CVE-2009-3002","CVE-2009-1883","CVE-2009-2903","CVE-2009-2849","CVE-2009-2847","CVE-2009-2584","CVE-2009-2767","CVE-2009-2908","CVE-2009-2846","CVE-2009-2695","CVE-2009-3001"]}]},{"id":"CVE-2009-3280","published":"2009-09-21T19:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nInteger signedness error in the find_ie function in net/wireless/scan.c in\nthe cfg80211 subsystem in the Linux kernel before 2.6.31.1-rc1 allows\nremote attackers to cause a denial of service (soft lockup) via malformed\npackets.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://patchwork.kernel.org/patch/45106/","https://www.cve.org/CVERecord?id=CVE-2009-3280"],"bugs":[""],"patches":{"linux-source-2.6.15":[],"linux":["upstream: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=fcc6cb0c13555e78c2d47257b6d1b5e59b0c419a"]},"tags":{},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.32~rc1","component":null,"pocket":"security"}]},{"name":"linux-source-2.6.15","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.15","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.15","debian":"https://tracker.debian.org/pkg/linux-source-2.6.15","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.32~rc1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2140","published":"2009-09-21T19:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple heap-based buffer overflows in\ncppcanvas/source/mtfrenderer/emfplus.cxx in Go-oo 2.x and 3.x before 3.0.1,\npreviously named ooo-build and related to OpenOffice.org (OOo), allow\nremote attackers to execute arbitrary code via a crafted EMF+ file, a\nsimilar issue to CVE-2008-2238.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"Patch is patches/emf+/emf+-cppcanvas-input-validation.diff, but\nemfplus.cxx is not included or compiled in Ubuntu 8.10 or 8.04. Debian\nincludes the patch in 2.4.1+dfsg-1+lenny3, but does not apply it anywhere."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://marc.info/?l=oss-security&m=125258116800739&w=2","http://marc.info/?l=oss-security&m=125265261125765&w=2","https://www.cve.org/CVERecord?id=CVE-2009-2140"],"bugs":[""],"patches":{"openoffice.org":["upstream: http://cgit.freedesktop.org/ooo-build/ooo-build/commit/?id=49b4e38571912a7d28c4044e5b2bd57e51c77d55"]},"tags":{},"packages":[{"name":"openoffice.org","source":"https://ubuntu.com/security/cve?package=openoffice.org","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=openoffice.org","debian":"https://tracker.debian.org/pkg/openoffice.org","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"3.0.1-9ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.0.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3274","published":"2009-09-21T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMozilla Firefox 3.6a1, 3.5.3, 3.5.2, and earlier 3.5.x versions, and 3.0.14\nand earlier 2.x and 3.x versions, on Linux uses a predictable /tmp pathname\nfor files selected from the Downloads window, which allows local users to\nreplace an arbitrary downloaded file by placing a file in a /tmp location\nbefore the download occurs, related to the Download Manager component.\nNOTE: some of these details are obtained from third party information.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"CVEs in Firefox are tracked in the xulrunner source packages. The\nmapping of xulrunner sources to firefox is:\nxulrunner (1.8.0): firefox (1.5) - Ubuntu 6.06 LTS\nxulrunner (1.8.1): firefox (2.0) - Ubuntu 6.10 - 8.04 LTS\nxulrunner-1.9: firefox-3.0\nxulrunner-1.9.1: firefox-3.5\nUbuntu 6.06 LTS and 10.04 LTS uses the embedded xulrunner and not\nthe system xulrunner-1.9.2, so it is tracked in the firefox source package."}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://jbrownsec.blogspot.com/2009/09/vamos-updates.html","https://ubuntu.com/security/notices/USN-853-1","https://www.cve.org/CVERecord?id=CVE-2009-3274"],"bugs":[""],"patches":{"firefox":[],"xulrunner":[],"xulrunner-1.9":[],"xulrunner-1.9.1":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner","source":"https://ubuntu.com/security/cve?package=xulrunner","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xulrunner","debian":"https://tracker.debian.org/pkg/xulrunner","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9","debian":"https://tracker.debian.org/pkg/xulrunner-1.9","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1.9.0.15+nobinonly-0ubuntu0.8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1.9.0.15+nobinonly-0ubuntu0.8.10.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.0.15+nobinonly-0ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.9.0.15","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.1","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.1","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.1","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.1.4+nobinonly-0ubuntu0.9.04.3","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.9.1.4+nobinonly-0ubuntu0.9.10.1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.9.1.4","component":null,"pocket":"security"}]}],"notices_ids":["USN-853-1"],"notices":[{"id":"USN-853-1","title":"Firefox and Xulrunner vulnerabilities","summary":"Firefox and Xulrunner vulnerabilities","instructions":"After a standard system upgrade you need to restart Firefox and any\napplications that use xulrunner, such as Epiphany, to effect the necessary\nchanges.\n","references":[],"published":"2009-10-31T01:40:21.090010","description":"Alin Rad Pop discovered a heap-based buffer overflow in Firefox when it\nconverted strings to floating point numbers. If a user were tricked into\nviewing a malicious website, a remote attacker could cause a denial of service\nor possibly execute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2009-1563)\n\nJeremy Brown discovered that the Firefox Download Manager was vulnerable to\nsymlink attacks. A local attacker could exploit this to create or overwrite\nfiles with the privileges of the user invoking the program. (CVE-2009-3274)\n\nPaul Stone discovered a flaw in the Firefox form history. If a user were\ntricked into viewing a malicious website, a remote attacker could access this\ndata to steal confidential information. (CVE-2009-3370)\n\nOrlando Berrera discovered that Firefox did not properly free memory when using\nweb-workers. If a user were tricked into viewing a malicious website, a remote\nattacker could cause a denial of service or possibly execute arbitrary code\nwith the privileges of the user invoking the program. This issue only\naffected Ubuntu 9.10. (CVE-2009-3371)\n\nA flaw was discovered in the way Firefox processed Proxy Auto-configuration\n(PAC) files. If a user configured the browser to use PAC files with certain\nregular expressions, an attacker could cause a denial of service or possibly\nexecute arbitrary code with the privileges of the user invoking the program.\n(CVE-2009-3372)\n\nA heap-based buffer overflow was discovered in Mozilla's GIF image parser. If a\nuser were tricked into viewing a malicious website, a remote attacker could\ncause a denial of service or possibly execute arbitrary code with the\nprivileges of the user invoking the program. (CVE-2009-3373)\n\nA flaw was discovered in the JavaScript engine of Firefox. An attacker could\nexploit this to execute scripts from page content with chrome privileges.\n(CVE-2009-3374)\n\nGregory Fleischer discovered that the same-origin check in Firefox could be\nbypassed by utilizing the document.getSelection function. An attacker could\nexploit this to read data from other domains. (CVE-2009-3375)\n\nJesse Ruderman and Sid Stamm discovered that Firefox did not properly display\nfilenames containing right-to-left (RTL) override characters. If a user were\ntricked into downloading a malicious file with a crafted filename, an attacker\ncould exploit this to trick the user into opening a different file than the\nuser expected. (CVE-2009-3376)\n\nSeveral flaws were discovered in third party media libraries. If a user were\ntricked into opening a crafted media file, a remote attacker could cause a\ndenial of service or possibly execute arbitrary code with the privileges of the\nuser invoking the program. This issue only affected Ubuntu 9.10.\n(CVE-2009-3377)\n\nVladimir Vukicevic, Jesse Ruderman, Martijn Wargers, Daniel Banchero, David\nKeeler, Boris Zbarsky, Thomas Frederiksen, Marcia Knous, Carsten Book, Kevin\nBrosnan, David Anderson and Jeff Walden discovered various flaws in the browser\nand JavaScript engines of Firefox. If a user were tricked into viewing a\nmalicious website, a remote attacker could cause a denial of service or\npossibly execute arbitrary code with the privileges of the user invoking the\nprogram. (CVE-2009-3380, CVE-2009-3381, CVE-2009-3382, CVE-2009-3383)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"firefox-3.0","version":"3.0.15+nobinonly-0ubuntu0.8.04.1","description":"","is_source":true},{"name":"xulrunner-1.9","version":"1.9.0.15+nobinonly-0ubuntu0.8.04.1","description":"","is_source":true},{"name":"firefox-3.0","version":"3.0.15+nobinonly-0ubuntu0.8.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.15+nobinonly-0ubuntu0.8.04.1"},{"name":"xulrunner-1.9","version":"1.9.0.15+nobinonly-0ubuntu0.8.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9/1.9.0.15+nobinonly-0ubuntu0.8.04.1"}],"intrepid":[{"name":"firefox-3.0","version":"3.0.15+nobinonly-0ubuntu0.8.10.1","description":"","is_source":true},{"name":"xulrunner-1.9","version":"1.9.0.15+nobinonly-0ubuntu0.8.10.1","description":"","is_source":true},{"name":"firefox-3.0","version":"3.0.15+nobinonly-0ubuntu0.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.15+nobinonly-0ubuntu0.8.10.1"},{"name":"abrowser","version":"3.0.15+nobinonly-0ubuntu0.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.15+nobinonly-0ubuntu0.8.10.1"},{"name":"xulrunner-1.9","version":"1.9.0.15+nobinonly-0ubuntu0.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9/1.9.0.15+nobinonly-0ubuntu0.8.10.1"}],"jaunty":[{"name":"firefox-3.0","version":"3.0.15+nobinonly-0ubuntu0.9.04.1","description":"","is_source":true},{"name":"xulrunner-1.9","version":"1.9.0.15+nobinonly-0ubuntu0.9.04.1","description":"","is_source":true},{"name":"firefox-3.0","version":"3.0.15+nobinonly-0ubuntu0.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.15+nobinonly-0ubuntu0.9.04.1"},{"name":"abrowser","version":"3.0.15+nobinonly-0ubuntu0.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.15+nobinonly-0ubuntu0.9.04.1"},{"name":"xulrunner-1.9","version":"1.9.0.15+nobinonly-0ubuntu0.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9/1.9.0.15+nobinonly-0ubuntu0.9.04.1"}],"karmic":[{"name":"xulrunner-1.9.1","version":"1.9.1.4+nobinonly-0ubuntu0.9.10.1","description":"","is_source":true},{"name":"firefox-3.5","version":"3.5.4+nobinonly-0ubuntu0.9.10.1","description":"","is_source":true},{"name":"xulrunner-1.9.1","version":"1.9.1.4+nobinonly-0ubuntu0.9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.1","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9.1/1.9.1.4+nobinonly-0ubuntu0.9.10.1"},{"name":"firefox-3.5","version":"3.5.4+nobinonly-0ubuntu0.9.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.5","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.5/3.5.4+nobinonly-0ubuntu0.9.10.1"}]},"type":"USN","cves_ids":["CVE-2009-3371","CVE-2009-3373","CVE-2009-3375","CVE-2009-3374","CVE-2009-3372","CVE-2009-3377","CVE-2009-3274","CVE-2009-3383","CVE-2009-3370","CVE-2009-1563","CVE-2009-3382","CVE-2009-3380","CVE-2009-3381","CVE-2009-3376"]}]},{"id":"CVE-2009-2939","published":"2009-09-21T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe postfix.postinst script in the Debian GNU/Linux and Ubuntu postfix\n2.5.5 package grants the postfix user write access to\n/var/spool/postfix/pid, which might allow local users to conduct symlink\nattacks that overwrite arbitrary files.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"per Weitse, the symlink attack should not be possible due to\ndefensive programming. A subverted postfix process running as 'postfix'\ncould replace the pid file, which master could then send signals to."}],"codename":null,"priority":"negligible","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2009/09/18/6","https://ubuntu.com/security/notices/USN-1113-1","https://www.cve.org/CVERecord?id=CVE-2009-2939"],"bugs":[""],"patches":{"postfix":[]},"tags":{},"packages":[{"name":"postfix","source":"https://ubuntu.com/security/cve?package=postfix","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=postfix","debian":"https://tracker.debian.org/pkg/postfix","statuses":[{"release_codename":"dapper","status":"released","description":"2.2.10-1ubuntu0.3","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.5.1-2ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"2.6.5-3","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.6.5-3","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"2.6.5-3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.5-3","component":null,"pocket":"security"}]}],"notices_ids":["USN-1113-1"],"notices":[{"id":"USN-1113-1","title":"Postfix vulnerabilities","summary":"An attacker could send crafted input to Postfix and cause it to reveal\nconfidential information.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2011-04-18T14:59:02.065901","description":"It was discovered that the Postfix package incorrectly granted write access\non the PID directory to the postfix user. A local attacker could use this\nflaw to possibly conduct a symlink attack and overwrite arbitrary files.\nThis issue only affected Ubuntu 6.06 LTS and 8.04 LTS. (CVE-2009-2939)\n\nWietse Venema discovered that Postfix incorrectly handled cleartext\ncommands after TLS is in place. A remote attacker could exploit this to\ninject cleartext commands into TLS sessions, and possibly obtain\nconfidential information such as passwords. (CVE-2011-0411)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"postfix","version":"2.5.1-2ubuntu1.3","description":"High-performance mail transport agent","is_source":true},{"name":"postfix","version":"2.5.1-2ubuntu1.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postfix","version_link":"https://launchpad.net/ubuntu/+source/postfix/2.5.1-2ubuntu1.3"}],"lucid":[{"name":"postfix","version":"2.7.0-1ubuntu0.1","description":"High-performance mail transport agent","is_source":true},{"name":"postfix","version":"2.7.0-1ubuntu0.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postfix","version_link":"https://launchpad.net/ubuntu/+source/postfix/2.7.0-1ubuntu0.1"}],"maverick":[{"name":"postfix","version":"2.7.1-1ubuntu0.1","description":"High-performance mail transport agent","is_source":true},{"name":"postfix","version":"2.7.1-1ubuntu0.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postfix","version_link":"https://launchpad.net/ubuntu/+source/postfix/2.7.1-1ubuntu0.1"}],"dapper":[{"name":"postfix","version":"2.2.10-1ubuntu0.3","description":"High-performance mail transport agent","is_source":true},{"name":"postfix","version":"2.2.10-1ubuntu0.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postfix","version_link":"https://launchpad.net/ubuntu/+source/postfix/2.2.10-1ubuntu0.3"}],"karmic":[{"name":"postfix","version":"2.6.5-3ubuntu0.1","description":"High-performance mail transport agent","is_source":true},{"name":"postfix","version":"2.6.5-3ubuntu0.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postfix","version_link":"https://launchpad.net/ubuntu/+source/postfix/2.6.5-3ubuntu0.1"}]},"type":"USN","cves_ids":["CVE-2009-2939","CVE-2011-0411"]}]},{"id":"CVE-2008-7244","published":"2009-09-18T22:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMozilla Firefox 3.0.1 and earlier allows remote attackers to cause a denial\nof service (browser hang) by calling the window.print function in a loop,\naka a \"printing DoS attack,\" possibly a related issue to CVE-2009-0821.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"Browser DoS, no security impact, ignoring"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2008-7244"],"bugs":[""],"patches":{"firefox":[],"firefox-3.0":[],"firefox-3.5":[],"xulrunner":[],"xulrunner-1.9":[],"xulrunner-1.9.1":[],"seamonkey":[],"thunderbird":[],"mozilla-thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"firefox-3.0","source":"https://ubuntu.com/security/cve?package=firefox-3.0","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox-3.0","debian":"https://tracker.debian.org/pkg/firefox-3.0","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"firefox-3.5","source":"https://ubuntu.com/security/cve?package=firefox-3.5","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox-3.5","debian":"https://tracker.debian.org/pkg/firefox-3.5","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"mozilla-thunderbird","source":"https://ubuntu.com/security/cve?package=mozilla-thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=mozilla-thunderbird","debian":"https://tracker.debian.org/pkg/mozilla-thunderbird","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"seamonkey","source":"https://ubuntu.com/security/cve?package=seamonkey","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=seamonkey","debian":"https://tracker.debian.org/pkg/seamonkey","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner","source":"https://ubuntu.com/security/cve?package=xulrunner","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xulrunner","debian":"https://tracker.debian.org/pkg/xulrunner","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9","debian":"https://tracker.debian.org/pkg/xulrunner-1.9","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.1","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.1","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.1","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3243","published":"2009-09-18T10:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the TLS dissector in Wireshark 1.2.0 and\n1.2.1, when running on Windows, allows remote attackers to cause a denial\nof service (application crash) via unknown vectors related to TLS 1.2\nconversations.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"may be windows-specific"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.wireshark.org/security/wnpa-sec-2009-06.html","https://www.cve.org/CVERecord?id=CVE-2009-3243"],"bugs":["https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4008"],"patches":{"wireshark":[],"ethereal":[]},"tags":{},"packages":[{"name":"ethereal","source":"https://ubuntu.com/security/cve?package=ethereal","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=ethereal","debian":"https://tracker.debian.org/pkg/ethereal","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"wireshark","source":"https://ubuntu.com/security/cve?package=wireshark","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=wireshark","debian":"https://tracker.debian.org/pkg/wireshark","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.2.x only","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.2.2","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3242","published":"2009-09-18T10:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in packet.c in the GSM A RR dissector in\nWireshark 1.2.0 and 1.2.1 allows remote attackers to cause a denial of\nservice (application crash) via unknown vectors related to \"an\nuninitialized dissector handle,\" which triggers an assertion failure.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.wireshark.org/security/wnpa-sec-2009-06.html","https://www.cve.org/CVERecord?id=CVE-2009-3242"],"bugs":["https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=3893"],"patches":{"wireshark":[],"ethereal":[]},"tags":{},"packages":[{"name":"ethereal","source":"https://ubuntu.com/security/cve?package=ethereal","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=ethereal","debian":"https://tracker.debian.org/pkg/ethereal","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"wireshark","source":"https://ubuntu.com/security/cve?package=wireshark","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=wireshark","debian":"https://tracker.debian.org/pkg/wireshark","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.2.x only","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.2.2","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3241","published":"2009-09-18T10:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in the OpcUa (OPC UA) dissector in Wireshark\n0.99.6 through 1.0.8 and 1.2.0 through 1.2.1 allows remote attackers to\ncause a denial of service (memory and CPU consumption) via malformed OPCUA\nService CallRequest packets.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.wireshark.org/security/wnpa-sec-2009-05.html","http://www.wireshark.org/security/wnpa-sec-2009-06.html","https://www.cve.org/CVERecord?id=CVE-2009-3241"],"bugs":["https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=3986"],"patches":{"wireshark":[],"ethereal":[]},"tags":{},"packages":[{"name":"ethereal","source":"https://ubuntu.com/security/cve?package=ethereal","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=ethereal","debian":"https://tracker.debian.org/pkg/ethereal","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"wireshark","source":"https://ubuntu.com/security/cve?package=wireshark","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=wireshark","debian":"https://tracker.debian.org/pkg/wireshark","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"1.2.7-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.2.2","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3239","published":"2009-09-18T10:30:00","updated_at":"2025-08-04T19:23:36.110448+00:00","description":"\nRejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs:\nCVE-2009-2139, CVE-2009-2140.  Reason: This candidate is a duplicate of\nCVE-2009-2139 and CVE-2009-2140.  Notes: All CVE users should reference\nCVE-2009-2139 and CVE-2009-2140 instead of this candidate.  All references\nand descriptions in this candidate have been removed to prevent accidental\nusage","ubuntu_description":"","notes":[{"author":"jdstrand","note":"duplicate of CVE-2009-2139 and CVE-2009-2140 (caused by mistake\nby OpenSUSE in not referencing the CVEs in their advisory)"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3239"],"bugs":[""],"patches":{"openoffice.org":[]},"tags":{},"packages":[{"name":"openoffice.org","source":"https://ubuntu.com/security/cve?package=openoffice.org","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=openoffice.org","debian":"https://tracker.debian.org/pkg/openoffice.org","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"ignored","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":73660,"limit":20,"total_results":79316}