{"cves":[{"id":"CVE-2009-3083","published":"2009-09-08T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe msn_slp_sip_recv function in libpurple/protocols/msn/slp.c in the MSN\nprotocol plugin in libpurple in Pidgin before 2.6.2 allows remote attackers\nto cause a denial of service (NULL pointer dereference and application\ncrash) via an SLP invite message that lacks certain required fields, as\ndemonstrated by a malformed message from a KMess client.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://pidgin.im/news/security/?id=39","https://ubuntu.com/security/notices/USN-886-1","https://www.cve.org/CVERecord?id=CVE-2009-3083"],"bugs":["http://developer.pidgin.im/ticket/10159"],"patches":{"pidgin":["upstream: http://developer.pidgin.im/viewmtn/revision/info/b4a95ea62b81a06ffc1993912471c511b786efdd"]},"tags":{},"packages":[{"name":"pidgin","source":"https://ubuntu.com/security/cve?package=pidgin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pidgin","debian":"https://tracker.debian.org/pkg/pidgin","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1:2.4.1-1ubuntu2.8","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1:2.5.2-0ubuntu1.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1:2.5.5-1ubuntu8.5","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"1:2.6.2-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.2","component":null,"pocket":"security"}]}],"notices_ids":["USN-886-1"],"notices":[{"id":"USN-886-1","title":"Pidgin vulnerabilities","summary":"Pidgin vulnerabilities","instructions":"After a standard system upgrade you need to restart Pidgin to effect\nthe necessary changes.\n","references":[],"published":"2010-01-18T15:37:32.660741","description":"It was discovered that Pidgin did not properly handle certain topic\nmessages in the IRC protocol handler. If a user were tricked into\nconnecting to a malicious IRC server, an attacker could cause Pidgin to\ncrash, leading to a denial of service. This issue only affected Ubuntu 8.04\nLTS, Ubuntu 8.10 and Ubuntu 9.04. (CVE-2009-2703)\n\nIt was discovered that Pidgin did not properly enforce the \"require\nTLS/SSL\" setting when connecting to certain older Jabber servers. If a\nremote attacker were able to perform a machine-in-the-middle attack, this flaw\ncould be exploited to view sensitive information. This issue only affected\nUbuntu 8.04 LTS, Ubuntu 8.10 and Ubuntu 9.04. (CVE-2009-3026)\n\nIt was discovered that Pidgin did not properly handle certain SLP invite\nmessages in the MSN protocol handler. A remote attacker could send a\nspecially crafted invite message and cause Pidgin to crash, leading to a\ndenial of service. This issue only affected Ubuntu 8.04 LTS, Ubuntu 8.10\nand Ubuntu 9.04. (CVE-2009-3083)\n\nIt was discovered that Pidgin did not properly handle certain errors in the\nXMPP protocol handler. A remote attacker could send a specially crafted\nmessage and cause Pidgin to crash, leading to a denial of service. This\nissue only affected Ubuntu 8.10 and Ubuntu 9.04. (CVE-2009-3085)\n\nIt was discovered that Pidgin did not properly handle malformed\ncontact-list data in the OSCAR protocol handler. A remote attacker could\nsend specially crafted contact-list data and cause Pidgin to crash, leading\nto a denial of service. (CVE-2009-3615)\n\nIt was discovered that Pidgin did not properly handle custom smiley\nrequests in the MSN protocol handler. A remote attacker could send a\nspecially crafted filename in a custom smiley request and obtain arbitrary\nfiles via directory traversal. This issue only affected Ubuntu 8.10, Ubuntu\n9.04 and Ubuntu 9.10. (CVE-2010-0013)\n\nPidgin for Ubuntu 8.04 LTS was also updated to fix connection issues with\nthe MSN protocol.\n\nUSN-675-1 and USN-781-1 provided updated Pidgin packages to fix multiple\nsecurity vulnerabilities in Ubuntu 8.04 LTS. The security patches to fix\nCVE-2008-2955 and CVE-2009-1376 were incomplete. This update corrects the\nproblem. Original advisory details:\n\n It was discovered that Pidgin did not properly handle file transfers\n containing a long filename and special characters in the MSN protocol\n handler. A remote attacker could send a specially crafted filename in a\n file transfer request and cause Pidgin to crash, leading to a denial of\n service. (CVE-2008-2955)\n\n It was discovered that Pidgin did not properly handle certain malformed\n messages in the MSN protocol handler. A remote attacker could send a\n specially crafted message and possibly execute arbitrary code with user\n privileges. (CVE-2009-1376)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"pidgin","version":"1:2.4.1-1ubuntu2.8","description":"","is_source":true},{"name":"pidgin","version":"1:2.4.1-1ubuntu2.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.4.1-1ubuntu2.8"}],"intrepid":[{"name":"pidgin","version":"1:2.5.2-0ubuntu1.6","description":"","is_source":true},{"name":"pidgin","version":"1:2.5.2-0ubuntu1.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.5.2-0ubuntu1.6"}],"jaunty":[{"name":"pidgin","version":"1:2.5.5-1ubuntu8.5","description":"","is_source":true},{"name":"pidgin","version":"1:2.5.5-1ubuntu8.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.5.5-1ubuntu8.5"}],"karmic":[{"name":"pidgin","version":"1:2.6.2-1ubuntu7.1","description":"","is_source":true},{"name":"pidgin","version":"1:2.6.2-1ubuntu7.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.6.2-1ubuntu7.1"}]},"type":"USN","cves_ids":["CVE-2008-2955","CVE-2009-1376","CVE-2009-2703","CVE-2009-3026","CVE-2009-3083","CVE-2009-3085","CVE-2009-3615","CVE-2010-0013"]}]},{"id":"CVE-2009-2703","published":"2009-09-08T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nlibpurple/protocols/irc/msgs.c in the IRC protocol plugin in libpurple in\nPidgin before 2.6.2 allows remote IRC servers to cause a denial of service\n(NULL pointer dereference and application crash) via a TOPIC message that\nlacks a topic string.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"PoC in Red Hat bug"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.pidgin.im/news/security/index.php?id=40","http://pidgin.im/pipermail/devel/2009-September/008850.html","https://ubuntu.com/security/notices/USN-886-1","https://www.cve.org/CVERecord?id=CVE-2009-2703"],"bugs":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2703"],"patches":{"pidgin":["upstream: http://developer.pidgin.im/viewmtn/revision/info/ad2c6ee53ec9122b25aeb1f918db53be69bdeac3"]},"tags":{},"packages":[{"name":"pidgin","source":"https://ubuntu.com/security/cve?package=pidgin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pidgin","debian":"https://tracker.debian.org/pkg/pidgin","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1:2.4.1-1ubuntu2.8","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1:2.5.2-0ubuntu1.6","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1:2.5.5-1ubuntu8.5","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"1:2.6.2-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.2","component":null,"pocket":"security"}]}],"notices_ids":["USN-886-1"],"notices":[{"id":"USN-886-1","title":"Pidgin vulnerabilities","summary":"Pidgin vulnerabilities","instructions":"After a standard system upgrade you need to restart Pidgin to effect\nthe necessary changes.\n","references":[],"published":"2010-01-18T15:37:32.660741","description":"It was discovered that Pidgin did not properly handle certain topic\nmessages in the IRC protocol handler. If a user were tricked into\nconnecting to a malicious IRC server, an attacker could cause Pidgin to\ncrash, leading to a denial of service. This issue only affected Ubuntu 8.04\nLTS, Ubuntu 8.10 and Ubuntu 9.04. (CVE-2009-2703)\n\nIt was discovered that Pidgin did not properly enforce the \"require\nTLS/SSL\" setting when connecting to certain older Jabber servers. If a\nremote attacker were able to perform a machine-in-the-middle attack, this flaw\ncould be exploited to view sensitive information. This issue only affected\nUbuntu 8.04 LTS, Ubuntu 8.10 and Ubuntu 9.04. (CVE-2009-3026)\n\nIt was discovered that Pidgin did not properly handle certain SLP invite\nmessages in the MSN protocol handler. A remote attacker could send a\nspecially crafted invite message and cause Pidgin to crash, leading to a\ndenial of service. This issue only affected Ubuntu 8.04 LTS, Ubuntu 8.10\nand Ubuntu 9.04. (CVE-2009-3083)\n\nIt was discovered that Pidgin did not properly handle certain errors in the\nXMPP protocol handler. A remote attacker could send a specially crafted\nmessage and cause Pidgin to crash, leading to a denial of service. This\nissue only affected Ubuntu 8.10 and Ubuntu 9.04. (CVE-2009-3085)\n\nIt was discovered that Pidgin did not properly handle malformed\ncontact-list data in the OSCAR protocol handler. A remote attacker could\nsend specially crafted contact-list data and cause Pidgin to crash, leading\nto a denial of service. (CVE-2009-3615)\n\nIt was discovered that Pidgin did not properly handle custom smiley\nrequests in the MSN protocol handler. A remote attacker could send a\nspecially crafted filename in a custom smiley request and obtain arbitrary\nfiles via directory traversal. This issue only affected Ubuntu 8.10, Ubuntu\n9.04 and Ubuntu 9.10. (CVE-2010-0013)\n\nPidgin for Ubuntu 8.04 LTS was also updated to fix connection issues with\nthe MSN protocol.\n\nUSN-675-1 and USN-781-1 provided updated Pidgin packages to fix multiple\nsecurity vulnerabilities in Ubuntu 8.04 LTS. The security patches to fix\nCVE-2008-2955 and CVE-2009-1376 were incomplete. This update corrects the\nproblem. Original advisory details:\n\n It was discovered that Pidgin did not properly handle file transfers\n containing a long filename and special characters in the MSN protocol\n handler. A remote attacker could send a specially crafted filename in a\n file transfer request and cause Pidgin to crash, leading to a denial of\n service. (CVE-2008-2955)\n\n It was discovered that Pidgin did not properly handle certain malformed\n messages in the MSN protocol handler. A remote attacker could send a\n specially crafted message and possibly execute arbitrary code with user\n privileges. (CVE-2009-1376)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"pidgin","version":"1:2.4.1-1ubuntu2.8","description":"","is_source":true},{"name":"pidgin","version":"1:2.4.1-1ubuntu2.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.4.1-1ubuntu2.8"}],"intrepid":[{"name":"pidgin","version":"1:2.5.2-0ubuntu1.6","description":"","is_source":true},{"name":"pidgin","version":"1:2.5.2-0ubuntu1.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.5.2-0ubuntu1.6"}],"jaunty":[{"name":"pidgin","version":"1:2.5.5-1ubuntu8.5","description":"","is_source":true},{"name":"pidgin","version":"1:2.5.5-1ubuntu8.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.5.5-1ubuntu8.5"}],"karmic":[{"name":"pidgin","version":"1:2.6.2-1ubuntu7.1","description":"","is_source":true},{"name":"pidgin","version":"1:2.6.2-1ubuntu7.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/pidgin","version_link":"https://launchpad.net/ubuntu/+source/pidgin/1:2.6.2-1ubuntu7.1"}]},"type":"USN","cves_ids":["CVE-2008-2955","CVE-2009-1376","CVE-2009-2703","CVE-2009-3026","CVE-2009-3083","CVE-2009-3085","CVE-2009-3615","CVE-2010-0013"]}]},{"id":"CVE-2009-2702","published":"2009-09-08T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nKDE KSSL in kdelibs 3.5.4, 4.2.4, and 4.3 does not properly handle a '\\0'\ncharacter in a domain name in the Subject Alternative Name field of an\nX.509 certificate, which allows man-in-the-middle attackers to spoof\narbitrary SSL servers via a crafted certificate issued by a legitimate\nCertification Authority, a related issue to CVE-2009-2408.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"kde4libs not as serious since KDE4 has moved to Qt4. However,\nit should be fixed due to other applications may use it. Also, by\nnad checin verification (ie non-netowork) will use kssl."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-833-1","https://www.cve.org/CVERecord?id=CVE-2009-2702"],"bugs":[""],"patches":{"kdelibs":["other: https://bugzilla.redhat.com/show_bug.cgi?id=520661"],"kde4libs":[]},"tags":{},"packages":[{"name":"kde4libs","source":"https://ubuntu.com/security/cve?package=kde4libs","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=kde4libs","debian":"https://tracker.debian.org/pkg/kde4libs","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"4:4.1.4-0ubuntu1~intrepid1.3","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"4:4.2.2-0ubuntu5.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"4:4.3.1-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:4.3.1-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"kdelibs","source":"https://ubuntu.com/security/cve?package=kdelibs","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=kdelibs","debian":"https://tracker.debian.org/pkg/kdelibs","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"4:3.5.10-0ubuntu1~hardy1.3","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"4:3.5.10-0ubuntu6.2","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"4:3.5.10.dfsg.1-1ubuntu8.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"4:3.5.10.dfsg.1-2ubuntu5","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"4:3.5.10.dfsg.1-2ubuntu5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-833-1"],"notices":[{"id":"USN-833-1","title":"KDE-Libs vulnerability","summary":"KDE-Libs vulnerability","instructions":"After a standard system upgrade you need to restart your session to effect\nthe necessary changes.\n","references":[],"published":"2009-09-17T23:15:12.143820","description":"It was discovered that KDE did not properly handle certificates with NULL\ncharacters in the Subject Alternative Name field of X.509 certificates. An\nattacker could exploit this to perform a machine-in-the-middle attack to view\nsensitive information or alter encrypted communications.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"kdelibs","version":"4:3.5.10-0ubuntu1~hardy1.3","description":"","is_source":true},{"name":"kdelibs4c2a","version":"4:3.5.10-0ubuntu1~hardy1.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/kdelibs","version_link":"https://launchpad.net/ubuntu/+source/kdelibs/4:3.5.10-0ubuntu1~hardy1.3"}],"intrepid":[{"name":"kde4libs","version":"4:4.1.4-0ubuntu1~intrepid1.3","description":"","is_source":true},{"name":"kdelibs","version":"4:3.5.10-0ubuntu6.2","description":"","is_source":true},{"name":"kdelibs4c2a","version":"4:3.5.10-0ubuntu6.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/kdelibs","version_link":"https://launchpad.net/ubuntu/+source/kdelibs/4:3.5.10-0ubuntu6.2"},{"name":"kdelibs5","version":"4:4.1.4-0ubuntu1~intrepid1.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/kde4libs","version_link":"https://launchpad.net/ubuntu/+source/kde4libs/4:4.1.4-0ubuntu1~intrepid1.3"}],"jaunty":[{"name":"kde4libs","version":"4:4.2.2-0ubuntu5.2","description":"","is_source":true},{"name":"kdelibs","version":"4:3.5.10.dfsg.1-1ubuntu8.2","description":"","is_source":true},{"name":"kdelibs4c2a","version":"4:3.5.10.dfsg.1-1ubuntu8.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/kdelibs","version_link":"https://launchpad.net/ubuntu/+source/kdelibs/4:3.5.10.dfsg.1-1ubuntu8.2"},{"name":"kdelibs5","version":"4:4.2.2-0ubuntu5.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/kde4libs","version_link":"https://launchpad.net/ubuntu/+source/kde4libs/4:4.2.2-0ubuntu5.2"}]},"type":"USN","cves_ids":["CVE-2009-2702"]}]},{"id":"CVE-2009-2632","published":"2009-09-08T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nBuffer overflow in the SIEVE script component (sieve/script.c), as used in\ncyrus-imapd in Cyrus IMAP Server 2.2.13 and 2.3.14, and Dovecot 1.0 before\n1.0.4 and 1.1 before 1.1.7, allows local users to execute arbitrary code\nand read or modify arbitrary messages via a crafted SIEVE script, related\nto the incorrect use of the sizeof operator for determining buffer length,\ncombined with an integer signedness error.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"version specified is of dovecot-sieve, not of the dovecot itself\nalthough code is present in dapper's dovecot, we don't compile\nthe sieve plugin"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://dovecot.org/list/dovecot-news/2009-September/000135.html","https://ubuntu.com/security/notices/USN-838-1","https://www.cve.org/CVERecord?id=CVE-2009-2632"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=546656 (dovecot)","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=547712 (kolab-cyrus-imapd)"],"patches":{"cyrus-imapd-2.2":["upstream: https://bugzilla.andrew.cmu.edu/cgi-bin/cvsweb.cgi/src/sieve/script.c.diff?r1=1.67&r2=1.68","debdiff: https://bugs.launchpad.net/ubuntu/+source/cyrus-imapd-2.2/+bug/438363"],"kolab-cyrus-imapd":[],"dovecot":["upstream: http://hg.dovecot.org/dovecot-sieve-1.1/rev/049f22520628","upstream: http://hg.dovecot.org/dovecot-sieve-1.1/rev/4577c4e1130d"]},"tags":{},"packages":[{"name":"cyrus-imapd-2.2","source":"https://ubuntu.com/security/cve?package=cyrus-imapd-2.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=cyrus-imapd-2.2","debian":"https://tracker.debian.org/pkg/cyrus-imapd-2.2","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.2.13-14ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"2.2.13-16ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"2.2.13-16ubuntu1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"2.2.13-16ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"2.2.13-16ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"2.2.13-16ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.2.13-15","component":null,"pocket":"security"}]},{"name":"dovecot","source":"https://ubuntu.com/security/cve?package=dovecot","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=dovecot","debian":"https://tracker.debian.org/pkg/dovecot","statuses":[{"release_codename":"dapper","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1:1.0.10-1ubuntu5.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1:1.1.4-0ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1:1.1.11-0ubuntu4.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1:1.1.11-0ubuntu9","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"1:1.1.11-0ubuntu9","component":null,"pocket":"security"},{"release_codename":"maverick","status":"released","description":"1:1.1.11-0ubuntu9","component":null,"pocket":"security"},{"release_codename":"natty","status":"released","description":"1:1.1.11-0ubuntu9","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"released","description":"1:1.1.11-0ubuntu9","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.1.7","component":null,"pocket":"security"}]},{"name":"kolab-cyrus-imapd","source":"https://ubuntu.com/security/cve?package=kolab-cyrus-imapd","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=kolab-cyrus-imapd","debian":"https://tracker.debian.org/pkg/kolab-cyrus-imapd","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"2.2.13-9","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"2.2.13-9","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"2.2.13-9","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"2.2.13-9","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-838-1"],"notices":[{"id":"USN-838-1","title":"Dovecot vulnerabilities","summary":"Dovecot vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-09-28T12:44:52.125658","description":"It was discovered that the ACL plugin in Dovecot would incorrectly handle\nnegative access rights. An attacker could exploit this flaw to access the\nDovecot server, bypassing the intended access restrictions. This only\naffected Ubuntu 8.04 LTS. (CVE-2008-4577)\n\nIt was discovered that the ManageSieve service in Dovecot incorrectly\nhandled \"..\" in script names. A remote attacker could exploit this to read\nand modify arbitrary sieve files on the server. This only affected Ubuntu\n8.10. (CVE-2008-5301)\n\nIt was discovered that the Sieve plugin in Dovecot incorrectly handled\ncertain sieve scripts. An authenticated user could exploit this with a\ncrafted sieve script to cause a denial of service or possibly execute\narbitrary code. (CVE-2009-2632, CVE-2009-3235)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"dovecot","version":"1:1.0.10-1ubuntu5.2","description":"","is_source":true},{"name":"dovecot-common","version":"1:1.0.10-1ubuntu5.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dovecot","version_link":"https://launchpad.net/ubuntu/+source/dovecot/1:1.0.10-1ubuntu5.2"}],"intrepid":[{"name":"dovecot","version":"1:1.1.4-0ubuntu1.3","description":"","is_source":true},{"name":"dovecot-common","version":"1:1.1.4-0ubuntu1.3","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dovecot","version_link":"https://launchpad.net/ubuntu/+source/dovecot/1:1.1.4-0ubuntu1.3"}],"jaunty":[{"name":"dovecot","version":"1:1.1.11-0ubuntu4.1","description":"","is_source":true},{"name":"dovecot-common","version":"1:1.1.11-0ubuntu4.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dovecot","version_link":"https://launchpad.net/ubuntu/+source/dovecot/1:1.1.11-0ubuntu4.1"}]},"type":"USN","cves_ids":["CVE-2008-4577","CVE-2008-5301","CVE-2009-2632","CVE-2009-3235"]}]},{"id":"CVE-2009-2139","published":"2009-09-08T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in svtools/source/filter.vcl/wmf/enhwmf.cxx in\nGo-oo 2.x and 3.x before 3.0.1, previously named ooo-build and related to\nOpenOffice.org (OOo), allows remote attackers to execute arbitrary code via\na crafted EMF file, a similar issue to CVE-2008-2238.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-840-1","https://www.cve.org/CVERecord?id=CVE-2009-2139"],"bugs":[""],"patches":{"openoffice.org":["upstream: http://cgit.freedesktop.org/ooo-build/ooo-build/commit/?id=49b4e38571912a7d28c4044e5b2bd57e51c77d55"]},"tags":{},"packages":[{"name":"openoffice.org","source":"https://ubuntu.com/security/cve?package=openoffice.org","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openoffice.org","debian":"https://tracker.debian.org/pkg/openoffice.org","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1:2.4.1-1ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1:2.4.1-11ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"3.0.1-9ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.0.1","component":null,"pocket":"security"}]}],"notices_ids":["USN-840-1"],"notices":[{"id":"USN-840-1","title":"OpenOffice.org vulnerabilities","summary":"OpenOffice.org vulnerabilities","instructions":"After a standard system upgrade you need to restart OpenOffice.org to\neffect the necessary changes.\n","references":[],"published":"2009-10-01T20:45:31.300621","description":"Dyon Balding discovered flaws in the way OpenOffice.org handled tables. If\na user were tricked into opening a specially crafted Word document, a\nremote attacker might be able to execute arbitrary code with user\nprivileges. (CVE-2009-0200, CVE-2009-0201)\n\nA memory overflow flaw was discovered in OpenOffice.org's handling of EMF\nfiles. If a user were tricked into opening a specially crafted document, a\nremote attacker might be able to execute arbitrary code with user\nprivileges. (CVE-2009-2139)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"openoffice.org","version":"1:2.4.1-1ubuntu2.2","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:2.4.1-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:2.4.1-1ubuntu2.2"}],"intrepid":[{"name":"openoffice.org","version":"1:2.4.1-11ubuntu2.2","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:2.4.1-11ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:2.4.1-11ubuntu2.2"}],"jaunty":[{"name":"openoffice.org","version":"1:3.0.1-9ubuntu3.1","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:3.0.1-9ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:3.0.1-9ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2009-0200","CVE-2009-0201","CVE-2009-2139"]}]},{"id":"CVE-2009-2946","published":"2009-09-04T20:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nEval injection vulnerability in scripts/uscan.pl before Rev 1984 in\ndevscripts allows remote attackers to execute arbitrary Perl code via\ncrafted pathnames on distribution servers for upstream source code used in\nDebian GNU/Linux packages.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"watch for regression fixed in dsa-1878-2:\nhttp://thread.gmane.org/gmane.comp.security.bugtraq/41022"},{"author":"jdstrand","note":"lenny7 should have all fixes"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-847-1","https://ubuntu.com/security/notices/USN-847-2","https://www.cve.org/CVERecord?id=CVE-2009-2946"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/devscripts/+bug/414298","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=515209"],"patches":{"devscripts":["vendor: http://www.debian.org/security/2009/dsa-1878"]},"tags":{},"packages":[{"name":"devscripts","source":"https://ubuntu.com/security/cve?package=devscripts","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=devscripts","debian":"https://tracker.debian.org/pkg/devscripts","statuses":[{"release_codename":"dapper","status":"released","description":"2.9.10-0ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.10.11ubuntu5.8.04.4","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.10.26ubuntu15.2","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.10.39ubuntu7.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.10.55","component":null,"pocket":"security"}]}],"notices_ids":["USN-847-1","USN-847-2"],"notices":[{"id":"USN-847-1","title":"Devscripts vulnerability","summary":"Devscripts vulnerability","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-10-08T21:45:25.703660","description":"Raphael Geissert discovered that uscan, a part of devscripts, did not\nproperly sanitize its input when processing pathnames. If uscan processed a\ncrafted filename for a file on a remote server, an attacker could execute\narbitrary code with the privileges of the user invoking the program.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"devscripts","version":"2.10.11ubuntu5.8.04.4","description":"","is_source":true},{"name":"devscripts","version":"2.10.11ubuntu5.8.04.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.11ubuntu5.8.04.4"}],"intrepid":[{"name":"devscripts","version":"2.10.26ubuntu15.2","description":"","is_source":true},{"name":"devscripts","version":"2.10.26ubuntu15.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.26ubuntu15.2"}],"jaunty":[{"name":"devscripts","version":"2.10.39ubuntu7.1","description":"","is_source":true},{"name":"devscripts","version":"2.10.39ubuntu7.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.10.39ubuntu7.1"}]},"type":"USN","cves_ids":["CVE-2009-2946"]},{"id":"USN-847-2","title":"devscripts vulnerability","summary":"devscripts vulnerability","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-10-09T14:13:35.286381","description":"USN-847-1 fixed vulnerabilities in devscripts. This update provides the\ncorresponding updates for Ubuntu 6.06 LTS.\n\nOriginal advisory details:\n\n Raphael Geissert discovered that uscan, a part of devscripts, did not\n properly sanitize its input when processing pathnames. If uscan processed a\n crafted filename for a file on a remote server, an attacker could execute\n arbitrary code with the privileges of the user invoking the program.\n","is_hidden":false,"release_packages":{"dapper":[{"name":"devscripts","version":"2.9.10-0ubuntu0.1","description":"","is_source":true},{"name":"devscripts","version":"2.9.10-0ubuntu0.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/devscripts","version_link":"https://launchpad.net/ubuntu/+source/devscripts/2.9.10-0ubuntu0.1"}]},"type":"USN","cves_ids":["CVE-2009-2946"]}]},{"id":"CVE-2009-2697","published":"2009-09-04T20:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe Red Hat build script for the GNOME Display Manager (GDM) before\n2.16.0-56 on Red Hat Enterprise Linux (RHEL) 5 omits TCP Wrapper support,\nwhich might allow remote attackers to bypass intended access restrictions\nvia XDMCP connections, a different vulnerability than CVE-2007-5079.","ubuntu_description":"","notes":[{"author":"kees","note":"Debian and Ubuntu builds are done correctly."}],"codename":null,"priority":"negligible","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-2697"],"bugs":[""],"patches":{"gdm":[]},"tags":{},"packages":[{"name":"gdm","source":"https://ubuntu.com/security/cve?package=gdm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gdm","debian":"https://tracker.debian.org/pkg/gdm","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3050","published":"2009-09-02T17:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nBuffer overflow in the set_page_size function in util.cxx in HTMLDOC 1.8.27\nand earlier allows context-dependent attackers to execute arbitrary code\nvia a long MEDIA SIZE comment. NOTE: it was later reported that there were\nadditional vectors in htmllib.cxx and ps-pdf.cxx using an AFM font file\nwith a long glyph name, but these vectors do not cross privilege\nboundaries.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"PoC: http://packetstormsecurity.org/0907-exploits/htmldoc-overflow.txt\nother PoC: http://milw0rm.com/exploits/9190\nstack smashing is detected by hardy+, so setting priority to low"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3050"],"bugs":["http://www.htmldoc.org/str.php?L214","https://bugs.gentoo.org/show_bug.cgi?id=278186","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=537637"],"patches":{"htmldoc":["vendor: https://bugs.gentoo.org/attachment.cgi?id=199846","vendor: http://cvs.fedoraproject.org/viewvc/devel/htmldoc/htmldoc-1.8.27-scanf-overflows.patch?revision=1.1&view=markup"]},"tags":{},"packages":[{"name":"htmldoc","source":"https://ubuntu.com/security/cve?package=htmldoc","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=htmldoc","debian":"https://tracker.debian.org/pkg/htmldoc","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"1.8.27-4.1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"1.8.27-4.1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.8.27-4.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3043","published":"2009-09-02T17:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe tty_ldisc_hangup function in drivers/char/tty_ldisc.c in the Linux\nkernel 2.6.31-rc before 2.6.31-rc8 allows local users to cause a denial of\nservice (system crash, sometimes preceded by a NULL pointer dereference) or\npossibly gain privileges via certain pseudo-terminal I/O activity, as\ndemonstrated by KernelTtyTest.c.","ubuntu_description":"","notes":[{"author":"kees","note":"unreleased kernel"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3043"],"bugs":[""],"patches":{"linux-source-2.6.15":[],"linux":[]},"tags":{},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.31","component":null,"pocket":"security"}]},{"name":"linux-source-2.6.15","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.15","debian":"https://tracker.debian.org/pkg/linux-source-2.6.15","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-0201","published":"2009-09-02T17:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in OpenOffice.org (OOo) before 3.1.1 and\nStarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute\narbitrary code via unspecified records in a crafted Word document, related\nto \"table parsing.\"","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-840-1","https://www.cve.org/CVERecord?id=CVE-2009-0201"],"bugs":[""],"patches":{"openoffice.org":["upstream: http://svn.services.openoffice.org/opengrok/diff/DEV300_m56/sw/source/filter/ww8/ww8par2.cxx?r1=/DEV300_m56/sw/source/filter/ww8/ww8par2.cxx@271189&r2=/DEV300_m56/sw/source/filter/ww8/ww8par2.cxx@273785&format=t&full=0"]},"tags":{},"packages":[{"name":"openoffice.org","source":"https://ubuntu.com/security/cve?package=openoffice.org","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openoffice.org","debian":"https://tracker.debian.org/pkg/openoffice.org","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1:2.4.1-1ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1:2.4.1-11ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1:3.0.1-9ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1:3.1.1~ooo310m15-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-840-1"],"notices":[{"id":"USN-840-1","title":"OpenOffice.org vulnerabilities","summary":"OpenOffice.org vulnerabilities","instructions":"After a standard system upgrade you need to restart OpenOffice.org to\neffect the necessary changes.\n","references":[],"published":"2009-10-01T20:45:31.300621","description":"Dyon Balding discovered flaws in the way OpenOffice.org handled tables. If\na user were tricked into opening a specially crafted Word document, a\nremote attacker might be able to execute arbitrary code with user\nprivileges. (CVE-2009-0200, CVE-2009-0201)\n\nA memory overflow flaw was discovered in OpenOffice.org's handling of EMF\nfiles. If a user were tricked into opening a specially crafted document, a\nremote attacker might be able to execute arbitrary code with user\nprivileges. (CVE-2009-2139)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"openoffice.org","version":"1:2.4.1-1ubuntu2.2","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:2.4.1-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:2.4.1-1ubuntu2.2"}],"intrepid":[{"name":"openoffice.org","version":"1:2.4.1-11ubuntu2.2","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:2.4.1-11ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:2.4.1-11ubuntu2.2"}],"jaunty":[{"name":"openoffice.org","version":"1:3.0.1-9ubuntu3.1","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:3.0.1-9ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:3.0.1-9ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2009-0200","CVE-2009-0201","CVE-2009-2139"]}]},{"id":"CVE-2009-0200","published":"2009-09-02T17:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nInteger underflow in OpenOffice.org (OOo) before 3.1.1 and\nStarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute\narbitrary code via crafted records in the document table of a Word\ndocument, leading to a heap-based buffer overflow.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-840-1","https://www.cve.org/CVERecord?id=CVE-2009-0200"],"bugs":[""],"patches":{"openoffice.org":["upstream: http://svn.services.openoffice.org/opengrok/diff/DEV300_m56/sw/source/filter/ww8/ww8par2.cxx?r1=/DEV300_m56/sw/source/filter/ww8/ww8par2.cxx@271189&r2=/DEV300_m56/sw/source/filter/ww8/ww8par2.cxx@273785&format=t&full=0"]},"tags":{},"packages":[{"name":"openoffice.org","source":"https://ubuntu.com/security/cve?package=openoffice.org","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openoffice.org","debian":"https://tracker.debian.org/pkg/openoffice.org","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1:2.4.1-1ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1:2.4.1-11ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1:3.0.1-9ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1:3.1.1~ooo310m15-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-840-1"],"notices":[{"id":"USN-840-1","title":"OpenOffice.org vulnerabilities","summary":"OpenOffice.org vulnerabilities","instructions":"After a standard system upgrade you need to restart OpenOffice.org to\neffect the necessary changes.\n","references":[],"published":"2009-10-01T20:45:31.300621","description":"Dyon Balding discovered flaws in the way OpenOffice.org handled tables. If\na user were tricked into opening a specially crafted Word document, a\nremote attacker might be able to execute arbitrary code with user\nprivileges. (CVE-2009-0200, CVE-2009-0201)\n\nA memory overflow flaw was discovered in OpenOffice.org's handling of EMF\nfiles. If a user were tricked into opening a specially crafted document, a\nremote attacker might be able to execute arbitrary code with user\nprivileges. (CVE-2009-2139)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"openoffice.org","version":"1:2.4.1-1ubuntu2.2","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:2.4.1-1ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:2.4.1-1ubuntu2.2"}],"intrepid":[{"name":"openoffice.org","version":"1:2.4.1-11ubuntu2.2","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:2.4.1-11ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:2.4.1-11ubuntu2.2"}],"jaunty":[{"name":"openoffice.org","version":"1:3.0.1-9ubuntu3.1","description":"","is_source":true},{"name":"openoffice.org-core","version":"1:3.0.1-9ubuntu3.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openoffice.org","version_link":"https://launchpad.net/ubuntu/+source/openoffice.org/1:3.0.1-9ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2009-0200","CVE-2009-0201","CVE-2009-2139"]}]},{"id":"CVE-2009-2958","published":"2009-09-02T15:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe tftp_request function in tftp.c in dnsmasq before 2.50, when\n--enable-tftp is used, allows remote attackers to cause a denial of service\n(NULL pointer dereference and daemon crash) via a TFTP read (aka RRQ)\nrequest with a malformed blksize option.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"Dapper does not have tftp code"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-827-1","https://www.cve.org/CVERecord?id=CVE-2009-2958"],"bugs":[""],"patches":{"dnsmasq":[]},"tags":{},"packages":[{"name":"dnsmasq","source":"https://ubuntu.com/security/cve?package=dnsmasq","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=dnsmasq","debian":"https://tracker.debian.org/pkg/dnsmasq","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.41-2ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.45-1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.47-3ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.50-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-827-1"],"notices":[{"id":"USN-827-1","title":"Dnsmasq vulnerabilities","summary":"Dnsmasq vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-09-01T21:40:24.582934","description":"IvAin Arce, Pablo HernAin Jorge, Alejandro Pablo Rodriguez, MartA­n Coco,\nAlberto SoliAto Testa and Pablo Annetta discovered that Dnsmasq did not\nproperly validate its input when processing TFTP requests for files with\nlong names. A remote attacker could cause a denial of service or execute\narbitrary code with user privileges. Dnsmasq runs as the 'dnsmasq' user by\ndefault on Ubuntu. (CVE-2009-2957)\n\nSteve Grubb discovered that Dnsmasq could be made to dereference a NULL\npointer when processing certain TFTP requests. A remote attacker could\ncause a denial of service by sending a crafted TFTP request.\n(CVE-2009-2958)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"dnsmasq","version":"2.41-2ubuntu2.2","description":"","is_source":true},{"name":"dnsmasq-base","version":"2.41-2ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dnsmasq","version_link":"https://launchpad.net/ubuntu/+source/dnsmasq/2.41-2ubuntu2.2"}],"intrepid":[{"name":"dnsmasq","version":"2.45-1ubuntu1.1","description":"","is_source":true},{"name":"dnsmasq-base","version":"2.45-1ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dnsmasq","version_link":"https://launchpad.net/ubuntu/+source/dnsmasq/2.45-1ubuntu1.1"}],"jaunty":[{"name":"dnsmasq","version":"2.47-3ubuntu0.1","description":"","is_source":true},{"name":"dnsmasq-base","version":"2.47-3ubuntu0.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dnsmasq","version_link":"https://launchpad.net/ubuntu/+source/dnsmasq/2.47-3ubuntu0.1"}]},"type":"USN","cves_ids":["CVE-2009-2957","CVE-2009-2958"]}]},{"id":"CVE-2009-2957","published":"2009-09-02T15:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in the tftp_request function in tftp.c in\ndnsmasq before 2.50, when --enable-tftp is used, might allow remote\nattackers to execute arbitrary code via a long filename in a TFTP packet,\nas demonstrated by a read (aka RRQ) request.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"Dapper does not have tftp code"}],"codename":null,"priority":"high","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-827-1","https://www.cve.org/CVERecord?id=CVE-2009-2957"],"bugs":[""],"patches":{"dnsmasq":[]},"tags":{},"packages":[{"name":"dnsmasq","source":"https://ubuntu.com/security/cve?package=dnsmasq","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=dnsmasq","debian":"https://tracker.debian.org/pkg/dnsmasq","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"2.41-2ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"2.45-1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"2.47-3ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.50-1","component":null,"pocket":"security"}]}],"notices_ids":["USN-827-1"],"notices":[{"id":"USN-827-1","title":"Dnsmasq vulnerabilities","summary":"Dnsmasq vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2009-09-01T21:40:24.582934","description":"IvAin Arce, Pablo HernAin Jorge, Alejandro Pablo Rodriguez, MartA­n Coco,\nAlberto SoliAto Testa and Pablo Annetta discovered that Dnsmasq did not\nproperly validate its input when processing TFTP requests for files with\nlong names. A remote attacker could cause a denial of service or execute\narbitrary code with user privileges. Dnsmasq runs as the 'dnsmasq' user by\ndefault on Ubuntu. (CVE-2009-2957)\n\nSteve Grubb discovered that Dnsmasq could be made to dereference a NULL\npointer when processing certain TFTP requests. A remote attacker could\ncause a denial of service by sending a crafted TFTP request.\n(CVE-2009-2958)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"dnsmasq","version":"2.41-2ubuntu2.2","description":"","is_source":true},{"name":"dnsmasq-base","version":"2.41-2ubuntu2.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dnsmasq","version_link":"https://launchpad.net/ubuntu/+source/dnsmasq/2.41-2ubuntu2.2"}],"intrepid":[{"name":"dnsmasq","version":"2.45-1ubuntu1.1","description":"","is_source":true},{"name":"dnsmasq-base","version":"2.45-1ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dnsmasq","version_link":"https://launchpad.net/ubuntu/+source/dnsmasq/2.45-1ubuntu1.1"}],"jaunty":[{"name":"dnsmasq","version":"2.47-3ubuntu0.1","description":"","is_source":true},{"name":"dnsmasq-base","version":"2.47-3ubuntu0.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/dnsmasq","version_link":"https://launchpad.net/ubuntu/+source/dnsmasq/2.47-3ubuntu0.1"}]},"type":"USN","cves_ids":["CVE-2009-2957","CVE-2009-2958"]}]},{"id":"CVE-2009-2700","published":"2009-09-02T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nsrc/network/ssl/qsslcertificate.cpp in Nokia Trolltech Qt 4.x does not\nproperly handle a '\\0' character in a domain name in the Subject\nAlternative Name field of an X.509 certificate, which allows\nman-in-the-middle attackers to spoof arbitrary SSL servers via a crafted\ncertificate issued by a legitimate Certification Authority, a related issue\nto CVE-2009-2408.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-829-1","https://www.cve.org/CVERecord?id=CVE-2009-2700"],"bugs":[""],"patches":{"qt4-x11":[]},"tags":{},"packages":[{"name":"qt4-x11","source":"https://ubuntu.com/security/cve?package=qt4-x11","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qt4-x11","debian":"https://tracker.debian.org/pkg/qt4-x11","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"4.3.4-0ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"4.4.3-0ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"4.5.0-0ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"4.5.2-0ubuntu5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-829-1"],"notices":[{"id":"USN-829-1","title":"Qt vulnerability","summary":"Qt vulnerability","instructions":"After a standard system upgrade you need to restart your session to effect\nthe necessary changes.\n","references":[],"published":"2009-09-10T22:30:43.178979","description":"It was discovered that Qt did not properly handle certificates with NULL\ncharacters in the Subject Alternative Name field of X.509 certificates. An\nattacker could exploit this to perform a machine-in-the-middle attack to view\nsensitive information or alter encrypted communications. (CVE-2009-2700)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"qt4-x11","version":"4.3.4-0ubuntu3.1","description":"","is_source":true},{"name":"libqt4-core","version":"4.3.4-0ubuntu3.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qt4-x11","version_link":"https://launchpad.net/ubuntu/+source/qt4-x11/4.3.4-0ubuntu3.1"}],"intrepid":[{"name":"qt4-x11","version":"4.4.3-0ubuntu1.3","description":"","is_source":true},{"name":"libqt4-network","version":"4.4.3-0ubuntu1.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qt4-x11","version_link":"https://launchpad.net/ubuntu/+source/qt4-x11/4.4.3-0ubuntu1.3"}],"jaunty":[{"name":"qt4-x11","version":"4.5.0-0ubuntu4.2","description":"","is_source":true},{"name":"libqt4-network","version":"4.5.0-0ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qt4-x11","version_link":"https://launchpad.net/ubuntu/+source/qt4-x11/4.5.0-0ubuntu4.2"}]},"type":"USN","cves_ids":["CVE-2009-2700"]}]},{"id":"CVE-2009-3042","published":"2009-09-01T18:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nSQL injection vulnerability in machine.php in Open Computer and Software\n(OCS) Inventory NG 1.02.1 allows remote attackers to execute arbitrary SQL\ncommands via the systemid parameter, a different vector than CVE-2009-3040.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3042"],"bugs":[""],"patches":{"ocsinventory-server":[]},"tags":{},"packages":[{"name":"ocsinventory-server","source":"https://ubuntu.com/security/cve?package=ocsinventory-server","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ocsinventory-server","debian":"https://tracker.debian.org/pkg/ocsinventory-server","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"2.0.5-1.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"2.0.5-1.1","component":null,"pocket":"security"},{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.02.1-2","component":null,"pocket":"security"},{"release_codename":"utopic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"2.0.5-1.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"vivid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [2.0.5-1.1]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3041","published":"2009-09-01T18:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nSPIP 1.9 before 1.9.2i and 2.0.x through 2.0.8 does not use proper access\ncontrol for (1) ecrire/exec/install.php and (2) ecrire/index.php, which\nallows remote attackers to conduct unauthorized activities related to\ninstallation and backups, as exploited in the wild in August 2009.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.spip-contrib.net/SPIP-Security-Alert-new-version","https://www.cve.org/CVERecord?id=CVE-2009-3041"],"bugs":[""],"patches":{"spip":[]},"tags":{},"packages":[{"name":"spip","source":"https://ubuntu.com/security/cve?package=spip","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=spip","debian":"https://tracker.debian.org/pkg/spip","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"2.0.9-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"2.0.9-1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"2.0.9-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3040","published":"2009-09-01T18:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple SQL injection vulnerabilities in Open Computer and Software (OCS)\nInventory NG 1.02 for Unix allow remote attackers to execute arbitrary SQL\ncommands via the (1) N, (2) DL, (3) O and (4) V parameters to download.php\nand the (5) SYSTEMID parameter to group_show.php.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3040"],"bugs":[""],"patches":{"ocsinventory-server":[]},"tags":{},"packages":[{"name":"ocsinventory-server","source":"https://ubuntu.com/security/cve?package=ocsinventory-server","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ocsinventory-server","debian":"https://tracker.debian.org/pkg/ocsinventory-server","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"2.0.5-1.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"2.0.5-1.1","component":null,"pocket":"security"},{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"maverick","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"natty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.02.1-2","component":null,"pocket":"security"},{"release_codename":"utopic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"2.0.5-1.1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"vivid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected [2.0.5-1.1]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3025","published":"2009-08-31T20:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUnspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause\na denial of service (crash) via a link in a Yahoo IM.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"only 2.6.0"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3025"],"bugs":[""],"patches":{"pidgin":[]},"tags":{},"packages":[{"name":"pidgin","source":"https://ubuntu.com/security/cve?package=pidgin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pidgin","debian":"https://tracker.debian.org/pkg/pidgin","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-3024","published":"2009-08-31T20:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe verify_hostname_of_cert function in the certificate checking feature in\nIO-Socket-SSL (IO::Socket::SSL) 1.14 through 1.25 only matches the prefix\nof a hostname when no wildcard is used, which allows remote attackers to\nbypass the hostname check for a certificate.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"versions < 1.14 don't check ssl certs at all"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-3024"],"bugs":[""],"patches":{"libio-socket-ssl-perl":["vendor: http://www.novell.com/linux/security/advisories/2009_15_sr.html"]},"tags":{},"packages":[{"name":"libio-socket-ssl-perl","source":"https://ubuntu.com/security/cve?package=libio-socket-ssl-perl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libio-socket-ssl-perl","debian":"https://tracker.debian.org/pkg/libio-socket-ssl-perl","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"1.13-1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"1.27-1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"1.27-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"1.27-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.27-1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2944","published":"2009-08-31T20:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nIncomplete blacklist vulnerability in the teximg plugin in ikiwiki before\n3.1415926 and 2.x before 2.53.4 allows context-dependent attackers to read\narbitrary files via crafted TeX commands.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-2944"],"bugs":[""],"patches":{"ikiwiki":[]},"tags":{},"packages":[{"name":"ikiwiki","source":"https://ubuntu.com/security/cve?package=ikiwiki","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ikiwiki","debian":"https://tracker.debian.org/pkg/ikiwiki","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"3.20100102.3ubuntu1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"3.20100102.3ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"3.20100102.3ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"3.20100102.3ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.1415926","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":73740,"limit":20,"total_results":79316}