{"cves":[{"id":"CVE-2009-2673","published":"2009-08-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe proxy mechanism implementation in Sun Java Runtime Environment (JRE) in\nJDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20,\nallows remote attackers to bypass intended access restrictions and connect\nto arbitrary sites via unspecified vectors, related to a declaration that\nlacks the final keyword.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-21-125136-16-1","https://ubuntu.com/security/notices/USN-814-1","https://www.cve.org/CVERecord?id=CVE-2009-2673"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.5","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu11","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b16","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-20","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6-15-1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6-15-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.15","component":null,"pocket":"security"}]}],"notices_ids":["USN-814-1"],"notices":[{"id":"USN-814-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-08-11T05:45:54.377980","description":"It was discovered that the XML HMAC signature system did not\ncorrectly check certain lengths. If an attacker sent a truncated\nHMAC, it could bypass authentication, leading to potential privilege\nescalation. (CVE-2009-0217)\n\nIt was discovered that JAR bundles would appear signed if only one element\nwas signed. If a user were tricked into running a malicious Java applet, a\nremote attacker could exploit this to gain access to private information and\npotentially run untrusted code. (CVE-2009-1896)\n\nIt was discovered that certain variables could leak information. If a\nuser were tricked into running a malicious Java applet, a remote attacker\ncould exploit this to gain access to private information and potentially\nrun untrusted code. (CVE-2009-2475, CVE-2009-2690)\n\nA flaw was discovered the OpenType checking. If a user were tricked\ninto running a malicious Java applet, a remote attacker could bypass\naccess restrictions. (CVE-2009-2476)\n\nIt was discovered that the XML processor did not correctly check\nrecursion. If a user or automated system were tricked into processing\na specially crafted XML, the system could crash, leading to a denial of\nservice. (CVE-2009-2625)\n\nIt was discovered that the Java audio subsystem did not correctly validate\ncertain parameters. If a user were tricked into running an untrusted\napplet, a remote attacker could read system properties. (CVE-2009-2670)\n\nMultiple flaws were discovered in the proxy subsystem. If a user\nwere tricked into running an untrusted applet, a remote attacker could\ndiscover local user names, obtain access to sensitive information, or\nbypass socket restrictions, leading to a loss of privacy. (CVE-2009-2671,\nCVE-2009-2672, CVE-2009-2673)\n\nFlaws were discovered in the handling of JPEG images, Unpack200 archives,\nand JDK13Services. If a user were tricked into running an untrusted\napplet, a remote attacker could load a specially crafted file that would\nbypass local file access protections and run arbitrary code with user\nprivileges. (CVE-2009-2674, CVE-2009-2675, CVE-2009-2676, CVE-2009-2689)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.5","description":"","is_source":true},{"name":"openjdk-6-jre-lib","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu11","description":"","is_source":true},{"name":"openjdk-6-jre-lib","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"}]},"type":"USN","cves_ids":["CVE-2009-0217","CVE-2009-1896","CVE-2009-2475","CVE-2009-2476","CVE-2009-2625","CVE-2009-2670","CVE-2009-2671","CVE-2009-2672","CVE-2009-2673","CVE-2009-2674","CVE-2009-2675","CVE-2009-2676","CVE-2009-2689","CVE-2009-2690"]}]},{"id":"CVE-2009-2672","published":"2009-08-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe proxy mechanism implementation in Sun Java Runtime Environment (JRE) in\nJDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, does\nnot prevent access to browser cookies by untrusted (1) applets and (2) Java\nWeb Start applications, which allows remote attackers to hijack web\nsessions via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-21-125136-16-1","https://ubuntu.com/security/notices/USN-814-1","https://www.cve.org/CVERecord?id=CVE-2009-2672"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.5","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu11","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b16","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-20","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6-15-1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6-15-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.15","component":null,"pocket":"security"}]}],"notices_ids":["USN-814-1"],"notices":[{"id":"USN-814-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-08-11T05:45:54.377980","description":"It was discovered that the XML HMAC signature system did not\ncorrectly check certain lengths. If an attacker sent a truncated\nHMAC, it could bypass authentication, leading to potential privilege\nescalation. (CVE-2009-0217)\n\nIt was discovered that JAR bundles would appear signed if only one element\nwas signed. If a user were tricked into running a malicious Java applet, a\nremote attacker could exploit this to gain access to private information and\npotentially run untrusted code. (CVE-2009-1896)\n\nIt was discovered that certain variables could leak information. If a\nuser were tricked into running a malicious Java applet, a remote attacker\ncould exploit this to gain access to private information and potentially\nrun untrusted code. (CVE-2009-2475, CVE-2009-2690)\n\nA flaw was discovered the OpenType checking. If a user were tricked\ninto running a malicious Java applet, a remote attacker could bypass\naccess restrictions. (CVE-2009-2476)\n\nIt was discovered that the XML processor did not correctly check\nrecursion. If a user or automated system were tricked into processing\na specially crafted XML, the system could crash, leading to a denial of\nservice. (CVE-2009-2625)\n\nIt was discovered that the Java audio subsystem did not correctly validate\ncertain parameters. If a user were tricked into running an untrusted\napplet, a remote attacker could read system properties. (CVE-2009-2670)\n\nMultiple flaws were discovered in the proxy subsystem. If a user\nwere tricked into running an untrusted applet, a remote attacker could\ndiscover local user names, obtain access to sensitive information, or\nbypass socket restrictions, leading to a loss of privacy. (CVE-2009-2671,\nCVE-2009-2672, CVE-2009-2673)\n\nFlaws were discovered in the handling of JPEG images, Unpack200 archives,\nand JDK13Services. If a user were tricked into running an untrusted\napplet, a remote attacker could load a specially crafted file that would\nbypass local file access protections and run arbitrary code with user\nprivileges. (CVE-2009-2674, CVE-2009-2675, CVE-2009-2676, CVE-2009-2689)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.5","description":"","is_source":true},{"name":"openjdk-6-jre-lib","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu11","description":"","is_source":true},{"name":"openjdk-6-jre-lib","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"}]},"type":"USN","cves_ids":["CVE-2009-0217","CVE-2009-1896","CVE-2009-2475","CVE-2009-2476","CVE-2009-2625","CVE-2009-2670","CVE-2009-2671","CVE-2009-2672","CVE-2009-2673","CVE-2009-2674","CVE-2009-2675","CVE-2009-2676","CVE-2009-2689","CVE-2009-2690"]}]},{"id":"CVE-2009-2671","published":"2009-08-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe SOCKS proxy implementation in Sun Java Runtime Environment (JRE) in JDK\nand JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows\nremote attackers to discover the username of the account that invoked an\nuntrusted (1) applet or (2) Java Web Start application via unspecified\nvectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-21-125136-16-1","https://ubuntu.com/security/notices/USN-814-1","https://www.cve.org/CVERecord?id=CVE-2009-2671"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.5","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu11","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b16","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-20","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6-15-1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6-15-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.15","component":null,"pocket":"security"}]}],"notices_ids":["USN-814-1"],"notices":[{"id":"USN-814-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-08-11T05:45:54.377980","description":"It was discovered that the XML HMAC signature system did not\ncorrectly check certain lengths. If an attacker sent a truncated\nHMAC, it could bypass authentication, leading to potential privilege\nescalation. (CVE-2009-0217)\n\nIt was discovered that JAR bundles would appear signed if only one element\nwas signed. If a user were tricked into running a malicious Java applet, a\nremote attacker could exploit this to gain access to private information and\npotentially run untrusted code. (CVE-2009-1896)\n\nIt was discovered that certain variables could leak information. If a\nuser were tricked into running a malicious Java applet, a remote attacker\ncould exploit this to gain access to private information and potentially\nrun untrusted code. (CVE-2009-2475, CVE-2009-2690)\n\nA flaw was discovered the OpenType checking. If a user were tricked\ninto running a malicious Java applet, a remote attacker could bypass\naccess restrictions. (CVE-2009-2476)\n\nIt was discovered that the XML processor did not correctly check\nrecursion. If a user or automated system were tricked into processing\na specially crafted XML, the system could crash, leading to a denial of\nservice. (CVE-2009-2625)\n\nIt was discovered that the Java audio subsystem did not correctly validate\ncertain parameters. If a user were tricked into running an untrusted\napplet, a remote attacker could read system properties. (CVE-2009-2670)\n\nMultiple flaws were discovered in the proxy subsystem. If a user\nwere tricked into running an untrusted applet, a remote attacker could\ndiscover local user names, obtain access to sensitive information, or\nbypass socket restrictions, leading to a loss of privacy. (CVE-2009-2671,\nCVE-2009-2672, CVE-2009-2673)\n\nFlaws were discovered in the handling of JPEG images, Unpack200 archives,\nand JDK13Services. If a user were tricked into running an untrusted\napplet, a remote attacker could load a specially crafted file that would\nbypass local file access protections and run arbitrary code with user\nprivileges. (CVE-2009-2674, CVE-2009-2675, CVE-2009-2676, CVE-2009-2689)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.5","description":"","is_source":true},{"name":"openjdk-6-jre-lib","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu11","description":"","is_source":true},{"name":"openjdk-6-jre-lib","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"}]},"type":"USN","cves_ids":["CVE-2009-0217","CVE-2009-1896","CVE-2009-2475","CVE-2009-2476","CVE-2009-2625","CVE-2009-2670","CVE-2009-2671","CVE-2009-2672","CVE-2009-2673","CVE-2009-2674","CVE-2009-2675","CVE-2009-2676","CVE-2009-2689","CVE-2009-2690"]}]},{"id":"CVE-2009-2670","published":"2009-08-05T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe audio system in Sun Java Runtime Environment (JRE) in JDK and JRE 6\nbefore Update 15, and JDK and JRE 5.0 before Update 20, does not prevent\naccess to java.lang.System properties by (1) untrusted applets and (2) Java\nWeb Start applications, which allows context-dependent attackers to obtain\nsensitive information by reading these properties.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://sunsolve.sun.com/search/document.do?assetkey=1-21-125136-16-1","https://ubuntu.com/security/notices/USN-814-1","https://www.cve.org/CVERecord?id=CVE-2009-2670"],"bugs":[""],"patches":{"sun-java6":[],"sun-java5":[],"openjdk-6":[]},"tags":{},"packages":[{"name":"openjdk-6","source":"https://ubuntu.com/security/cve?package=openjdk-6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openjdk-6","debian":"https://tracker.debian.org/pkg/openjdk-6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6b18-1.8.2-4ubuntu1~8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"6b12-0ubuntu6.5","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6b14-1.4.1-0ubuntu11","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"6b16-1.6.1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6b16","component":null,"pocket":"security"}]},{"name":"sun-java5","source":"https://ubuntu.com/security/cve?package=sun-java5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java5","debian":"https://tracker.debian.org/pkg/sun-java5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.5.0-22-0ubuntu0.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5.0-20","component":null,"pocket":"security"}]},{"name":"sun-java6","source":"https://ubuntu.com/security/cve?package=sun-java6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sun-java6","debian":"https://tracker.debian.org/pkg/sun-java6","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"6.20dlj-0ubuntu1.8.04","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"6.20dlj-0ubuntu1.9.04","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"6-15-1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"6-15-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"6.15","component":null,"pocket":"security"}]}],"notices_ids":["USN-814-1"],"notices":[{"id":"USN-814-1","title":"OpenJDK vulnerabilities","summary":"OpenJDK vulnerabilities","instructions":"After a standard system upgrade you need to restart any Java applications\nto effect the necessary changes.\n","references":[],"published":"2009-08-11T05:45:54.377980","description":"It was discovered that the XML HMAC signature system did not\ncorrectly check certain lengths. If an attacker sent a truncated\nHMAC, it could bypass authentication, leading to potential privilege\nescalation. (CVE-2009-0217)\n\nIt was discovered that JAR bundles would appear signed if only one element\nwas signed. If a user were tricked into running a malicious Java applet, a\nremote attacker could exploit this to gain access to private information and\npotentially run untrusted code. (CVE-2009-1896)\n\nIt was discovered that certain variables could leak information. If a\nuser were tricked into running a malicious Java applet, a remote attacker\ncould exploit this to gain access to private information and potentially\nrun untrusted code. (CVE-2009-2475, CVE-2009-2690)\n\nA flaw was discovered the OpenType checking. If a user were tricked\ninto running a malicious Java applet, a remote attacker could bypass\naccess restrictions. (CVE-2009-2476)\n\nIt was discovered that the XML processor did not correctly check\nrecursion. If a user or automated system were tricked into processing\na specially crafted XML, the system could crash, leading to a denial of\nservice. (CVE-2009-2625)\n\nIt was discovered that the Java audio subsystem did not correctly validate\ncertain parameters. If a user were tricked into running an untrusted\napplet, a remote attacker could read system properties. (CVE-2009-2670)\n\nMultiple flaws were discovered in the proxy subsystem. If a user\nwere tricked into running an untrusted applet, a remote attacker could\ndiscover local user names, obtain access to sensitive information, or\nbypass socket restrictions, leading to a loss of privacy. (CVE-2009-2671,\nCVE-2009-2672, CVE-2009-2673)\n\nFlaws were discovered in the handling of JPEG images, Unpack200 archives,\nand JDK13Services. If a user were tricked into running an untrusted\napplet, a remote attacker could load a specially crafted file that would\nbypass local file access protections and run arbitrary code with user\nprivileges. (CVE-2009-2674, CVE-2009-2675, CVE-2009-2676, CVE-2009-2689)\n","is_hidden":false,"release_packages":{"intrepid":[{"name":"openjdk-6","version":"6b12-0ubuntu6.5","description":"","is_source":true},{"name":"openjdk-6-jre-lib","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"},{"name":"icedtea6-plugin","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"},{"name":"openjdk-6-jre","version":"6b12-0ubuntu6.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b12-0ubuntu6.5"}],"jaunty":[{"name":"openjdk-6","version":"6b14-1.4.1-0ubuntu11","description":"","is_source":true},{"name":"openjdk-6-jre-lib","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"},{"name":"icedtea6-plugin","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"},{"name":"openjdk-6-jre","version":"6b14-1.4.1-0ubuntu11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/openjdk-6","version_link":"https://launchpad.net/ubuntu/+source/openjdk-6/6b14-1.4.1-0ubuntu11"}]},"type":"USN","cves_ids":["CVE-2009-0217","CVE-2009-1896","CVE-2009-2475","CVE-2009-2476","CVE-2009-2625","CVE-2009-2670","CVE-2009-2671","CVE-2009-2672","CVE-2009-2673","CVE-2009-2674","CVE-2009-2675","CVE-2009-2676","CVE-2009-2689","CVE-2009-2690"]}]},{"id":"CVE-2009-2665","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe nsDocument::SetScriptGlobalObject function in\ncontent/base/src/nsDocument.cpp in Mozilla Firefox 3.5.x before 3.5.2, when\ncertain add-ons are enabled, does not properly handle a Link HTTP header,\nwhich allows remote attackers to execute arbitrary JavaScript with chrome\nprivileges via a crafted web page, related to an incorrect security\nwrapper.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2009/mfsa2009-46.html","https://www.cve.org/CVERecord?id=CVE-2009-2665"],"bugs":["https://bugzilla.mozilla.org/show_bug.cgi?id=498897"],"patches":{"firefox":[],"xulrunner-1.9":[],"xulrunner-1.9.1":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9","debian":"https://tracker.debian.org/pkg/xulrunner-1.9","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.9.0.14","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.1","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.1","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.1","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.1.3+build1+nobinonly-0ubuntu0.9.04.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2664","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe js_watch_set function in js/src/jsdbgapi.cpp in the JavaScript engine\nin Mozilla Firefox before 3.0.12 allows remote attackers to cause a denial\nof service (assertion failure and application exit) or possibly execute\narbitrary code via a crafted .js file, related to a \"memory safety bug.\"\nNOTE: this was originally reported as affecting versions before 3.0.13.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2009/mfsa2009-45.html","https://www.cve.org/CVERecord?id=CVE-2009-2664"],"bugs":["https://bugzilla.mozilla.org/show_bug.cgi?id=501270"],"patches":{"firefox":[],"xulrunner-1.9":[],"xulrunner-1.9.1":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9","debian":"https://tracker.debian.org/pkg/xulrunner-1.9","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.9.0.14","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.1","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.1","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.1","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.1.3+build1+nobinonly-0ubuntu0.9.04.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2662","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe browser engine in Mozilla Firefox 3.5.x before 3.5.2 allows remote\nattackers to cause a denial of service (memory corruption and application\ncrash) or possibly execute arbitrary code via vectors related to the\nTraceRecorder::snapshot function in js/src/jstracer.cpp, and unspecified\nother vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2009/mfsa2009-45.html","https://www.cve.org/CVERecord?id=CVE-2009-2662"],"bugs":["https://bugzilla.mozilla.org/show_bug.cgi?id=503144","https://bugzilla.mozilla.org/show_bug.cgi?id=502832"],"patches":{"firefox":[],"xulrunner-1.9":[],"xulrunner-1.9.1":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9","debian":"https://tracker.debian.org/pkg/xulrunner-1.9","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.9.0.14","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.1","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.1","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.1","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.1.3+build1+nobinonly-0ubuntu0.9.04.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2661","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe asn1_length function in strongSwan 2.8 before 2.8.11, 4.2 before\n4.2.17, and 4.3 before 4.3.3 does not properly handle X.509 certificates\nwith crafted Relative Distinguished Names (RDNs), which allows remote\nattackers to cause a denial of service (pluto IKE daemon crash) via\nmalformed ASN.1 data. NOTE: this is due to an incomplete fix for\nCVE-2009-2185.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-2661"],"bugs":[""],"patches":{"strongswan":[]},"tags":{},"packages":[{"name":"strongswan","source":"https://ubuntu.com/security/cve?package=strongswan","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=strongswan","debian":"https://tracker.debian.org/pkg/strongswan","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"4.3.2-1.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"4.3.2-1.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"4.3.2-1.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"4.3.2-1.1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2660","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple integer overflows in CamlImages 2.2 might allow context-dependent\nattackers to execute arbitrary code via images containing large width and\nheight values that trigger a heap-based buffer overflow, related to (1)\ncrafted GIF files (gifread.c) and (2) crafted JPEG files (jpegread.c), a\ndifferent vulnerability than CVE-2009-2295.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-2660"],"bugs":[""],"patches":{"camlimages":[]},"tags":{},"packages":[{"name":"camlimages","source":"https://ubuntu.com/security/cve?package=camlimages","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=camlimages","debian":"https://tracker.debian.org/pkg/camlimages","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1:2.2.0-2ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1:2.2.0-3ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1:2.2.0-4+lenny2build0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1:3.0.1-3","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2659","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe Admin media handler in core/servers/basehttp.py in Django 1.0 and 0.96\ndoes not properly map URL requests to expected \"static media files,\" which\nallows remote attackers to conduct directory traversal attacks and read\narbitrary files via a crafted URL.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-2659"],"bugs":[""],"patches":{"python-django":["upstream: http://www.djangoproject.com/weblog/2009/jul/28/security/","debdiff: https://bugs.launchpad.net/ubuntu/+source/python-django/+bug/408825"]},"tags":{},"packages":[{"name":"python-django","source":"https://ubuntu.com/security/cve?package=python-django","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python-django","debian":"https://tracker.debian.org/pkg/python-django","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.0.2-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"1.1-1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"1.1-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"1.1-1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"1.1-1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"1.1-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.0.3, 1.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2658","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nDirectory traversal vulnerability in ZNC before 0.072 allows remote\nattackers to overwrite arbitrary files via a crafted DCC SEND request.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-2658"],"bugs":[""],"patches":{"znc":[]},"tags":{},"packages":[{"name":"znc","source":"https://ubuntu.com/security/cve?package=znc","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=znc","debian":"https://tracker.debian.org/pkg/znc","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"0.074-1","component":null,"pocket":"security"},{"release_codename":"maverick","status":"not-affected","description":"0.074-1","component":null,"pocket":"security"},{"release_codename":"natty","status":"not-affected","description":"0.074-1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"not-affected","description":"0.074-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2657","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nnilfs-utils before 2.0.14 installs multiple programs with unnecessary\nsetuid privileges, which allows local users to execute arbitrary commands\nvia the device string in a -c command line option to mkfs.nilfs2.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-2657"],"bugs":[""],"patches":{"nilfs2-tools":[]},"tags":{},"packages":[{"name":"nilfs2-tools","source":"https://ubuntu.com/security/cve?package=nilfs2-tools","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=nilfs2-tools","debian":"https://tracker.debian.org/pkg/nilfs2-tools","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"karmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"maverick","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"natty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2470","published":"2009-08-04T16:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMozilla Firefox before 3.0.12, and 3.5.x before 3.5.2, allows remote SOCKS5\nproxy servers to cause a denial of service (data stream corruption) via a\nlong domain name in a reply.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2009/mfsa2009-38.html","https://www.cve.org/CVERecord?id=CVE-2009-2470"],"bugs":["https://bugzilla.mozilla.org/show_bug.cgi?id=459524"],"patches":{"firefox":[],"xulrunner-1.9":[],"xulrunner-1.9.1":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9","debian":"https://tracker.debian.org/pkg/xulrunner-1.9","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.9.0.14","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.1","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.1","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.1","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.1.3+build1+nobinonly-0ubuntu0.9.04.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-2663","published":"2009-08-04T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nlibvorbis before r16182, as used in Mozilla Firefox 3.5.x before 3.5.2 and\nother products, allows context-dependent attackers to cause a denial of\nservice (memory corruption and application crash) or possibly execute\narbitrary code via a crafted .ogg file.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"added libvorbis\nPoC in RH bug"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2009/mfsa2009-45.html","https://ubuntu.com/security/notices/USN-825-1","https://www.cve.org/CVERecord?id=CVE-2009-2663"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/libvorbis/+bug/413528","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=540958","https://bugzilla.mozilla.org/show_bug.cgi?id=500254","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2663"],"patches":{"libvorbis":["upstream: https://trac.xiph.org/changeset/16181","upstream: https://trac.xiph.org/changeset/16182"],"firefox":[],"xulrunner-1.9":[],"xulrunner-1.9.1":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libvorbis","source":"https://ubuntu.com/security/cve?package=libvorbis","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libvorbis","debian":"https://tracker.debian.org/pkg/libvorbis","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1.2.0.dfsg-2ubuntu0.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1.2.0.dfsg-3.1ubuntu0.8.10.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.2.0.dfsg-3.1ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"1.2.0.dfsg-6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9","debian":"https://tracker.debian.org/pkg/xulrunner-1.9","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"1.9.0.14","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.9.0.14","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.1","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.1","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.1","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.1.3+build1+nobinonly-0ubuntu0.9.04.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-825-1"],"notices":[{"id":"USN-825-1","title":"libvorbis vulnerability","summary":"libvorbis vulnerability","instructions":"After a standard system upgrade you need to restart any applications that\nuse libvorbis, such as Totem and gtkpod, to effect the necessary changes.\n","references":[],"published":"2009-08-24T15:31:16.373829","description":"It was discovered that libvorbis did not correctly handle certain malformed\nogg files. If a user were tricked into opening a specially crafted ogg file\nwith an application that uses libvorbis, an attacker could execute\narbitrary code with the user's privileges. (CVE-2009-2663)\n\nUSN-682-1 provided updated libvorbis packages to fix multiple security\nvulnerabilities. The upstream security patch to fix CVE-2008-1420\nintroduced a regression when reading sound files encoded with libvorbis\n1.0beta1. This update corrects the problem.\n\nOriginal advisory details:\n\n It was discovered that libvorbis did not correctly handle certain\n malformed sound files. If a user were tricked into opening a specially\n crafted sound file with an application that uses libvorbis, an attacker\n could execute arbitrary code with the user's privileges. (CVE-2008-1420)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"libvorbis","version":"1.2.0.dfsg-2ubuntu0.2","description":"","is_source":true},{"name":"libvorbis0a","version":"1.2.0.dfsg-2ubuntu0.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libvorbis","version_link":"https://launchpad.net/ubuntu/+source/libvorbis/1.2.0.dfsg-2ubuntu0.2"}],"intrepid":[{"name":"libvorbis","version":"1.2.0.dfsg-3.1ubuntu0.8.10.1","description":"","is_source":true},{"name":"libvorbis0a","version":"1.2.0.dfsg-3.1ubuntu0.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libvorbis","version_link":"https://launchpad.net/ubuntu/+source/libvorbis/1.2.0.dfsg-3.1ubuntu0.8.10.1"}],"jaunty":[{"name":"libvorbis","version":"1.2.0.dfsg-3.1ubuntu0.9.04.1","description":"","is_source":true},{"name":"libvorbis0a","version":"1.2.0.dfsg-3.1ubuntu0.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/libvorbis","version_link":"https://launchpad.net/ubuntu/+source/libvorbis/1.2.0.dfsg-3.1ubuntu0.9.04.1"}]},"type":"USN","cves_ids":["CVE-2008-1420","CVE-2009-2663"]}]},{"id":"CVE-2009-2654","published":"2009-08-03T14:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMozilla Firefox before 3.0.13, and 3.5.x before 3.5.2, allows remote\nattackers to spoof the address bar, and possibly conduct phishing attacks,\nvia a crafted web page that calls window.open with an invalid character in\nthe URL, makes document.write calls to the resulting object, and then calls\nthe stop method during the loading of the error page.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-811-1","https://www.cve.org/CVERecord?id=CVE-2009-2654"],"bugs":[""],"patches":{"firefox-3.0":[],"firefox-3.5":[],"xulrunner-1.9":[],"xulrunner-1.9.1":[]},"tags":{},"packages":[{"name":"firefox-3.0","source":"https://ubuntu.com/security/cve?package=firefox-3.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox-3.0","debian":"https://tracker.debian.org/pkg/firefox-3.0","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"3.0.13+nobinonly-0ubuntu0.8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"3.0.13+nobinonly-0ubuntu0.8.10.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"3.0.13+nobinonly-0ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"firefox-3.5","source":"https://ubuntu.com/security/cve?package=firefox-3.5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox-3.5","debian":"https://tracker.debian.org/pkg/firefox-3.5","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"3.5.2+nobinonly-0ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9","debian":"https://tracker.debian.org/pkg/xulrunner-1.9","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1.9.0.13+nobinonly-0ubuntu0.8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1.9.0.13+nobinonly-0ubuntu0.8.10.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.0.13+nobinonly-0ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"xulrunner-1.9.1","source":"https://ubuntu.com/security/cve?package=xulrunner-1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xulrunner-1.9.1","debian":"https://tracker.debian.org/pkg/xulrunner-1.9.1","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.9.1.2+nobinonly-0ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-811-1"],"notices":[{"id":"USN-811-1","title":"Firefox and Xulrunner vulnerability","summary":"Firefox and Xulrunner vulnerability","instructions":"After a standard system upgrade you need to restart Firefox and any\napplications that use xulrunner, such as Epiphany, to effect the necessary\nchanges.\n","references":[],"published":"2009-08-08T00:41:18.016427","description":"Juan Pablo Lopez Yacubian discovered that Firefox did not properly display\ninvalid URLs. If a user were tricked into accessing a malicious website, an\nattacker could exploit this to spoof the location bar, such as in a\nphishing attack. Furthermore, if the malicious website had a valid SSL\ncertificate, Firefox would display the spoofed page as trusted.\n","is_hidden":false,"release_packages":{"hardy":[{"name":"firefox-3.0","version":"3.0.13+nobinonly-0ubuntu0.8.04.1","description":"","is_source":true},{"name":"xulrunner-1.9","version":"1.9.0.13+nobinonly-0ubuntu0.8.04.1","description":"","is_source":true},{"name":"firefox-3.0","version":"3.0.13+nobinonly-0ubuntu0.8.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.13+nobinonly-0ubuntu0.8.04.1"},{"name":"xulrunner-1.9","version":"1.9.0.13+nobinonly-0ubuntu0.8.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9/1.9.0.13+nobinonly-0ubuntu0.8.04.1"}],"intrepid":[{"name":"firefox-3.0","version":"3.0.13+nobinonly-0ubuntu0.8.10.1","description":"","is_source":true},{"name":"xulrunner-1.9","version":"1.9.0.13+nobinonly-0ubuntu0.8.10.1","description":"","is_source":true},{"name":"firefox-3.0","version":"3.0.13+nobinonly-0ubuntu0.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.13+nobinonly-0ubuntu0.8.10.1"},{"name":"abrowser","version":"3.0.13+nobinonly-0ubuntu0.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.13+nobinonly-0ubuntu0.8.10.1"},{"name":"xulrunner-1.9","version":"1.9.0.13+nobinonly-0ubuntu0.8.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9/1.9.0.13+nobinonly-0ubuntu0.8.10.1"}],"jaunty":[{"name":"firefox-3.0","version":"3.0.13+nobinonly-0ubuntu0.9.04.1","description":"","is_source":true},{"name":"xulrunner-1.9","version":"1.9.0.13+nobinonly-0ubuntu0.9.04.1","description":"","is_source":true},{"name":"firefox-3.0","version":"3.0.13+nobinonly-0ubuntu0.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.13+nobinonly-0ubuntu0.9.04.1"},{"name":"abrowser","version":"3.0.13+nobinonly-0ubuntu0.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox-3.0","version_link":"https://launchpad.net/ubuntu/+source/firefox-3.0/3.0.13+nobinonly-0ubuntu0.9.04.1"},{"name":"xulrunner-1.9","version":"1.9.0.13+nobinonly-0ubuntu0.9.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9","version_link":"https://launchpad.net/ubuntu/+source/xulrunner-1.9/1.9.0.13+nobinonly-0ubuntu0.9.04.1"}]},"type":"USN","cves_ids":["CVE-2009-2654"]}]},{"id":"CVE-2009-2404","published":"2009-08-03T14:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in a regular-expression parser in Mozilla\nNetwork Security Services (NSS) before 3.12.3, as used in Firefox,\nThunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM),\nallows remote SSL servers to cause a denial of service (application crash)\nor possibly execute arbitrary code via a long domain name in the subject's\nCommon Name (CN) field of an X.509 certificate, related to the\ncert_TestHostName function.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-810-1","https://www.cve.org/CVERecord?id=CVE-2009-2404"],"bugs":[""],"patches":{"nss":[]},"tags":{},"packages":[{"name":"nss","source":"https://ubuntu.com/security/cve?package=nss","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=nss","debian":"https://tracker.debian.org/pkg/nss","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"3.12.3.1-0ubuntu0.8.04.1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"3.12.3.1-0ubuntu0.8.04.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"3.12.3.1-0ubuntu0.8.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-810-1"],"notices":[{"id":"USN-810-1","title":"NSS vulnerabilities","summary":"NSS vulnerabilities","instructions":"After a standard system upgrade you need to restart any applications that\nuse NSS, such as Firefox, to effect the necessary changes.\n","references":[],"published":"2009-08-04T21:19:46.158393","description":"Moxie Marlinspike discovered that NSS did not properly handle regular\nexpressions in certificate names. A remote attacker could create a\nspecially crafted certificate to cause a denial of service (via application\ncrash) or execute arbitrary code as the user invoking the program.\n(CVE-2009-2404)\n\nMoxie Marlinspike and Dan Kaminsky independently discovered that NSS did\nnot properly handle certificates with NULL characters in the certificate\nname. An attacker could exploit this to perform a machine-in-the-middle attack\nto view sensitive information or alter encrypted communications.\n(CVE-2009-2408)\n\nDan Kaminsky discovered NSS would still accept certificates with MD2 hash\nsignatures. As a result, an attacker could potentially create a malicious\ntrusted certificate to impersonate another site. (CVE-2009-2409)\n","is_hidden":false,"release_packages":{"hardy":[{"name":"nss","version":"3.12.3.1-0ubuntu0.8.04.1","description":"","is_source":true},{"name":"libnss3-1d","version":"3.12.3.1-0ubuntu0.8.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/nss","version_link":"https://launchpad.net/ubuntu/+source/nss/3.12.3.1-0ubuntu0.8.04.1"}],"intrepid":[{"name":"nss","version":"3.12.3.1-0ubuntu0.8.10.1","description":"","is_source":true},{"name":"libnss3-1d","version":"3.12.3.1-0ubuntu0.8.10.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/nss","version_link":"https://launchpad.net/ubuntu/+source/nss/3.12.3.1-0ubuntu0.8.10.1"}],"jaunty":[{"name":"nss","version":"3.12.3.1-0ubuntu0.9.04.1","description":"","is_source":true},{"name":"libnss3-1d","version":"3.12.3.1-0ubuntu0.9.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/nss","version_link":"https://launchpad.net/ubuntu/+source/nss/3.12.3.1-0ubuntu0.9.04.1"}]},"type":"USN","cves_ids":["CVE-2009-2404","CVE-2009-2409","CVE-2009-2408"]}]},{"id":"CVE-2009-1870","published":"2009-07-31T19:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe\nAIR before 1.5.2, allows attackers to obtain sensitive information via\nvectors involving saving an SWF file to a hard drive, related to a \"local\nsandbox vulnerability.\"","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-1870"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"10.0.32.18-1hardy1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"10.0.32.18-1intrepid1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"10.0.32.18-1jaunty1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.0.32.18-1karmic2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.0.32.18","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"dapper","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"9.0.246.0ubuntu1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"10.0.32.18ubuntu0.8.10.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"10.0.32.18ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.0.32.18ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.0.32.18","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-1869","published":"2009-07-31T19:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nInteger overflow in the ActionScript Virtual Machine 2 (AVM2) abcFile\nparser in Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18,\nand Adobe AIR before 1.5.2, allows attackers to cause a denial of service\n(application crash) or possibly execute arbitrary code via an AVM2 file\nwith a large intrf_count value that triggers a dereference of an\nout-of-bounds pointer.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-1869"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"10.0.32.18-1hardy1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"10.0.32.18-1intrepid1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"10.0.32.18-1jaunty1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.0.32.18-1karmic2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.0.32.18","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"dapper","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"9.0.246.0ubuntu1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"10.0.32.18ubuntu0.8.10.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"10.0.32.18ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.0.32.18ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.0.32.18","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-1868","published":"2009-07-31T19:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in Adobe Flash Player before 9.0.246.0 and 10.x\nbefore 10.0.32.18, and Adobe AIR before 1.5.2, allows attackers to cause a\ndenial of service (application crash) or possibly execute arbitrary code\nvia unspecified vectors involving URL parsing.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-1868"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"10.0.32.18-1hardy1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"10.0.32.18-1intrepid1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"10.0.32.18-1jaunty1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.0.32.18-1karmic2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.0.32.18","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"dapper","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"9.0.246.0ubuntu1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"10.0.32.18ubuntu0.8.10.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"10.0.32.18ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.0.32.18ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.0.32.18","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2009-1867","published":"2009-07-31T19:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe\nAIR before 1.5.2, allows attackers to trick a user into (1) selecting a\nlink or (2) completing a dialog, related to a \"clickjacking vulnerability.\"","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2009-1867"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"10.0.32.18-1hardy1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"10.0.32.18-1intrepid1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"10.0.32.18-1jaunty1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.0.32.18-1karmic2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.0.32.18","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"dapper","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"9.0.246.0ubuntu1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"10.0.32.18ubuntu0.8.10.1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"10.0.32.18ubuntu0.9.04.1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"10.0.32.18ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"10.0.32.18","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":73840,"limit":20,"total_results":79316}