{"cves":[{"id":"CVE-2007-3391","published":"2007-06-26T00:30:00","updated_at":"2025-07-17T16:41:43.741697+00:00","description":"\nWireshark 0.99.5 allows remote attackers to cause a denial of service\n(memory consumption) via a malformed DCP ETSI packet that triggers an\ninfinite loop.","ubuntu_description":"","notes":[{"author":"fujitsu","note":"The file with the issue only appeared in 0.99.5, and was fixed in 0.99.6.\nNo release ever had this."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3391"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"ethereal","source":"https://ubuntu.com/security/cve?package=ethereal","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ethereal","debian":"https://tracker.debian.org/pkg/ethereal","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"wireshark","source":"https://ubuntu.com/security/cve?package=wireshark","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wireshark","debian":"https://tracker.debian.org/pkg/wireshark","statuses":[{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3390","published":"2007-06-26T00:30:00","updated_at":"2025-07-17T16:41:43.741697+00:00","description":"\nWireshark 0.99.5 and 0.10.x up to 0.10.14, when running on certain systems,\nallows remote attackers to cause a denial of service (crash) via crafted\niSeries capture files that trigger a SIGTRAP.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3390"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/wireshark/+bug/132915"],"patches":{},"tags":{},"packages":[{"name":"ethereal","source":"https://ubuntu.com/security/cve?package=ethereal","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ethereal","debian":"https://tracker.debian.org/pkg/ethereal","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"wireshark","source":"https://ubuntu.com/security/cve?package=wireshark","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wireshark","debian":"https://tracker.debian.org/pkg/wireshark","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.99.3a-1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.99.4-6ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3389","published":"2007-06-26T00:30:00","updated_at":"2025-07-17T16:41:43.741697+00:00","description":"\nWireshark before 0.99.6 allows remote attackers to cause a denial of\nservice (crash) via a crafted chunked encoding in an HTTP response,\npossibly related to a zero-length payload.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3389"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/wireshark/+bug/132915"],"patches":{},"tags":{},"packages":[{"name":"ethereal","source":"https://ubuntu.com/security/cve?package=ethereal","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ethereal","debian":"https://tracker.debian.org/pkg/ethereal","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"wireshark","source":"https://ubuntu.com/security/cve?package=wireshark","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=wireshark","debian":"https://tracker.debian.org/pkg/wireshark","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.99.3a-1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.99.4-6ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3377","published":"2007-06-25T21:30:00","updated_at":"2025-07-17T16:41:41.932093+00:00","description":"\nHeader.pm in Net::DNS before 0.60, a Perl module, (1) generates predictable\nsequence IDs with a fixed increment and (2) can use the same starting ID\nfor all child processes of a forking server, which allows remote attackers\nto spoof DNS responses, as originally reported for qpsmtp and spamassassin.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-483-1","https://www.cve.org/CVERecord?id=CVE-2007-3377"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"libnet-dns-perl","source":"https://ubuntu.com/security/cve?package=libnet-dns-perl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libnet-dns-perl","debian":"https://tracker.debian.org/pkg/libnet-dns-perl","statuses":[{"release_codename":"dapper","status":"released","description":"0.53-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.57-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.59-1build1.1","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"not-affected","description":"0.60-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.60","component":null,"pocket":"security"}]}],"notices_ids":["USN-483-1"],"notices":[{"id":"USN-483-1","title":"libnet-dns-perl vulnerabilities","summary":"libnet-dns-perl vulnerabilities","instructions":"After a standard system upgrade you need to reboot your computer to\neffect the necessary changes.","references":[],"published":"2007-07-13T18:57:25","description":"Peter Johannes Holzer discovered that the Net::DNS Perl module had\npredictable sequence numbers. This could allow remote attackers to\ncarry out DNS spoofing, leading to possible machine-in-the-middle attacks.\n(CVE-2007-3377)\n\nSteffen Ullrich discovered that the Net::DNS Perl module did not correctly\ndetect recursive compressed responses. A remote attacker could send a\nspecially crafted packet, causing applications using Net::DNS to crash or\nmonopolize CPU resources, leading to a denial of service. (CVE-2007-3409)","is_hidden":false,"release_packages":{"dapper":[{"name":"libnet-dns-perl","version":"0.53-2ubuntu1","is_source":false,"is_visible":true,"source_link":"","version_link":""}],"edgy":[{"name":"libnet-dns-perl","version":"0.57-1ubuntu1","is_source":false,"is_visible":true,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2007-3377","CVE-2007-3409"]}]},{"id":"CVE-2007-3373","published":"2007-06-25T19:30:00","updated_at":"2025-07-17T16:41:41.932093+00:00","description":"\ndaemon.c in cman (redhat-cluster-suite) before 20070622 does not clear a\nbuffer for reading requests, which might allow local users to obtain\nsensitive information from previous requests.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3373"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"redhat-cluster-suite","source":"https://ubuntu.com/security/cve?package=redhat-cluster-suite","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=redhat-cluster-suite","debian":"https://tracker.debian.org/pkg/redhat-cluster-suite","statuses":[{"release_codename":"dapper","status":"released","description":"1.20060222-0ubuntu6.1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"2.20061002-0ubuntu2","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"2.20070315-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3372","published":"2007-06-22T21:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe Avahi daemon in Avahi before 0.6.20 allows attackers to cause a denial\nof service (exit) via empty TXT data over D-Bus, which triggers an assert\nerror.","ubuntu_description":"","notes":[{"author":"kees","note":"this is a local-user DoS"}],"codename":null,"priority":"negligible","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-696-1","https://www.cve.org/CVERecord?id=CVE-2007-3372"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"avahi","source":"https://ubuntu.com/security/cve?package=avahi","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=avahi","debian":"https://tracker.debian.org/pkg/avahi","statuses":[{"release_codename":"dapper","status":"released","description":"0.6.10-0ubuntu3.5","component":null,"pocket":"security"},{"release_codename":"edgy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"feisty","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"released","description":"0.6.20-2","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"0.6.20-2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"0.6.20-2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-696-1"],"notices":[{"id":"USN-696-1","title":"Avahi vulnerabilities","summary":"Avahi vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2008-12-18T22:24:52.421904","description":"Emanuele Aina discovered that Avahi did not properly validate its input when\nprocessing data over D-Bus. A local attacker could send an empty TXT message\nvia D-Bus and cause a denial of service (failed assertion). This issue only\naffected Ubuntu 6.06 LTS. (CVE-2007-3372)\n\nHugo Dias discovered that Avahi did not properly verify its input when\nprocessing mDNS packets. A remote attacker could send a crafted mDNS packet\nand cause a denial of service (assertion failure). (CVE-2008-5081)\n","is_hidden":false,"release_packages":{"gutsy":[{"name":"avahi","version":"0.6.20-2ubuntu3.4","description":"","is_source":true},{"name":"avahi-daemon","version":"0.6.20-2ubuntu3.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/avahi","version_link":"https://launchpad.net/ubuntu/+source/avahi/0.6.20-2ubuntu3.4"}],"dapper":[{"name":"avahi","version":"0.6.10-0ubuntu3.5","description":"","is_source":true},{"name":"avahi-daemon","version":"0.6.10-0ubuntu3.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/avahi","version_link":"https://launchpad.net/ubuntu/+source/avahi/0.6.10-0ubuntu3.5"}],"intrepid":[{"name":"avahi","version":"0.6.23-2ubuntu2.1","description":"","is_source":true},{"name":"avahi-daemon","version":"0.6.23-2ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/avahi","version_link":"https://launchpad.net/ubuntu/+source/avahi/0.6.23-2ubuntu2.1"}],"hardy":[{"name":"avahi","version":"0.6.22-2ubuntu4.1","description":"","is_source":true},{"name":"avahi-daemon","version":"0.6.22-2ubuntu4.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/avahi","version_link":"https://launchpad.net/ubuntu/+source/avahi/0.6.22-2ubuntu4.1"}]},"type":"USN","cves_ids":["CVE-2007-3372","CVE-2008-5081"]}]},{"id":"CVE-2007-3360","published":"2007-06-22T18:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nhook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary\ncommands by sending a client certain data containing NICK and EXEC strings,\nwhich exceeds the bounds of a hash table, and injects an EXEC hook function\nthat receives and executes shell commands.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"debdiff in LP"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://bugs.launchpad.net/ubuntu/+source/ircii-pana/+bug/129771","https://www.cve.org/CVERecord?id=CVE-2007-3360"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"ircii-pana","source":"https://ubuntu.com/security/cve?package=ircii-pana","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ircii-pana","debian":"https://tracker.debian.org/pkg/ircii-pana","statuses":[{"release_codename":"dapper","status":"released","description":"1:1.1-4ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"1:1.1-4ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"1:1.1-4ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3374","published":"2007-06-22T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nBuffer overflow in cluster/cman/daemon/daemon.c in cman\n(redhat-cluster-suite) before 20070622 allows local users to cause a denial\nof service (crash) and possibly execute arbitrary code via long client\nmessages.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-476-1","https://www.cve.org/CVERecord?id=CVE-2007-3374"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"redhat-cluster-suite","source":"https://ubuntu.com/security/cve?package=redhat-cluster-suite","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=redhat-cluster-suite","debian":"https://tracker.debian.org/pkg/redhat-cluster-suite","statuses":[{"release_codename":"dapper","status":"released","description":"1.20060222-0ubuntu6.1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"2.20061002-0ubuntu2","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"2.20070315-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-2833","published":"2007-06-21T20:30:00","updated_at":"2025-07-17T16:41:29.189465+00:00","description":"\nEmacs 21 allows user-assisted attackers to cause a denial of service\n(crash) via certain crafted images, as demonstrated via a GIF image in vm\nmode, related to image size calculation.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-504-1","https://www.cve.org/CVERecord?id=CVE-2007-2833"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"emacs21","source":"https://ubuntu.com/security/cve?package=emacs21","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=emacs21","debian":"https://tracker.debian.org/pkg/emacs21","statuses":[{"release_codename":"dapper","status":"released","description":"21.4a-3ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"21.4a-6ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"21.4a+1-2ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-504-1"],"notices":[{"id":"USN-504-1","title":"Emacs vulnerability","summary":"Emacs vulnerability","instructions":"After a standard system upgrade you need to restart emacs to effect the\nnecessary changes.\n","references":[],"published":"2007-08-28T19:23:19.450388","description":"Hendrik Tews discovered that emacs21 did not correctly handle certain\nGIF images. By tricking a user into opening a specially crafted GIF,\na remote attacker could cause emacs21 to crash, resulting in a denial\nof service.\n","is_hidden":false,"release_packages":{"dapper":[{"name":"emacs21","version":"21.4a-3ubuntu2.1","description":"","is_source":true},{"name":"emacs21","version":"21.4a-3ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/emacs21","version_link":"https://launchpad.net/ubuntu/+source/emacs21/21.4a-3ubuntu2.1"},{"name":"emacs21-nox","version":"21.4a-3ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/emacs21","version_link":"https://launchpad.net/ubuntu/+source/emacs21/21.4a-3ubuntu2.1"}],"feisty":[{"name":"emacs21","version":"21.4a+1-2ubuntu1.1","description":"","is_source":true},{"name":"emacs21","version":"21.4a+1-2ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/emacs21","version_link":"https://launchpad.net/ubuntu/+source/emacs21/21.4a+1-2ubuntu1.1"},{"name":"emacs21-nox","version":"21.4a+1-2ubuntu1.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/emacs21","version_link":"https://launchpad.net/ubuntu/+source/emacs21/21.4a+1-2ubuntu1.1"}],"edgy":[{"name":"emacs21","version":"21.4a-6ubuntu2.1","description":"","is_source":true},{"name":"emacs21","version":"21.4a-6ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/emacs21","version_link":"https://launchpad.net/ubuntu/+source/emacs21/21.4a-6ubuntu2.1"},{"name":"emacs21-nox","version":"21.4a-6ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/emacs21","version_link":"https://launchpad.net/ubuntu/+source/emacs21/21.4a-6ubuntu2.1"}]},"type":"USN","cves_ids":["CVE-2007-2833"]}]},{"id":"CVE-2007-3329","published":"2007-06-21T18:30:00","updated_at":"2025-07-17T16:41:41.932093+00:00","description":"\nMultiple array index errors in the (1) get_intra_block, (2)\nget_inter_block_h263, and (3) get_inter_block_mpeg functions in\nsrc/bitstream/mbcoding.c in Xvid 1.1.2 allow remote attackers to execute\narbitrary code via a crafted (a) Avi, (b) H.263, or (c) MPEG file.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3329"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"xvidcore","source":"https://ubuntu.com/security/cve?package=xvidcore","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xvidcore","debian":"https://tracker.debian.org/pkg/xvidcore","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"feisty","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1.1.2-0.1ubuntu3","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1.1.2-0.1ubuntu3","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.1.2-0.1ubuntu3","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.1.2-0.1ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3316","published":"2007-06-21T18:30:00","updated_at":"2025-07-17T16:41:41.932093+00:00","description":"\nMultiple format string vulnerabilities in plugins in VideoLAN VLC Media\nPlayer before 0.8.6c allow remote attackers to cause a denial of service\n(crash) or execute arbitrary code via format string specifiers in (1) an\nOgg/Vorbis file, (2) an Ogg/Theora file, (3) a CDDB entry for a CD Digital\nAudio (CDDA) file, or (4) Service Announce Protocol (SAP) multicast\npackets.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3316"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"vlc","source":"https://ubuntu.com/security/cve?package=vlc","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=vlc","debian":"https://tracker.debian.org/pkg/vlc","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"feisty","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"released","description":"0.8.6.release.c-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"0.8.6.release.c-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"0.8.6.release.c-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"0.8.6.release.c-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"0.8.6.release.c-0ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3304","published":"2007-06-20T22:30:00","updated_at":"2025-07-17T16:41:41.932093+00:00","description":"\nApache httpd 1.3.37, 2.0.59, and 2.2.4 with the Prefork MPM module, allows\nlocal users to cause a denial of service by modifying the worker_score and\nprocess_score arrays to reference an arbitrary process ID, which is sent a\nSIGUSR1 signal from the master process, aka \"SIGUSR1 killer.\"","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-499-1","https://www.cve.org/CVERecord?id=CVE-2007-3304"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"apache2","source":"https://ubuntu.com/security/cve?package=apache2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=apache2","debian":"https://tracker.debian.org/pkg/apache2","statuses":[{"release_codename":"dapper","status":"released","description":"2.0.55-4ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"2.0.55-4ubuntu4.1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"2.2.3-3.2ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-499-1"],"notices":[{"id":"USN-499-1","title":"Apache vulnerabilities","summary":"Apache vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.","references":[],"published":"2007-08-17T04:41:48","description":"Stefan Esser discovered that mod_status did not force a character set,\nwhich could result in browsers becoming vulnerable to XSS attacks when\nprocessing the output. If a user were tricked into viewing server\nstatus output during a crafted server request, a remote attacker could\nexploit this to modify the contents, or steal confidential data (such as\npasswords), within the same domain. By default, mod_status is disabled\nin Ubuntu. (CVE-2006-5752)\n\nNiklas Edmundsson discovered that the mod_cache module could be made to\ncrash using a specially crafted request. A remote user could use this\nto cause a denial of service if Apache was configured to use a threaded\nworker. By default, mod_cache is disabled in Ubuntu. (CVE-2007-1863)\n\nA flaw was discovered in the signal handling of Apache. A local\nattacker could trick Apache into sending SIGUSR1 to other processes.\nThe vulnerable code was only present in Ubuntu Feisty. (CVE-2007-3304)","is_hidden":false,"release_packages":{"dapper":[{"name":"apache2-mpm-worker","version":"2.0.55-4ubuntu2.2","is_source":false,"source_link":"","version_link":""},{"name":"apache2-common","version":"2.0.55-4ubuntu2.2","is_source":false,"source_link":"","version_link":""},{"name":"apache2-mpm-prefork","version":"2.0.55-4ubuntu2.2","is_source":false,"source_link":"","version_link":""}],"feisty":[{"name":"apache2-mpm-worker","version":"2.2.3-3.2ubuntu0.1","is_source":false,"source_link":"","version_link":""},{"name":"apache2.2-common","version":"2.2.3-3.2ubuntu0.1","is_source":false,"source_link":"","version_link":""},{"name":"apache2-mpm-prefork","version":"2.2.3-3.2ubuntu0.1","is_source":false,"source_link":"","version_link":""}],"edgy":[{"name":"apache2-mpm-worker","version":"2.0.55-4ubuntu4.1","is_source":false,"source_link":"","version_link":""},{"name":"apache2-common","version":"2.0.55-4ubuntu4.1","is_source":false,"source_link":"","version_link":""},{"name":"apache2-mpm-prefork","version":"2.0.55-4ubuntu4.1","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2006-5752","CVE-2007-1863","CVE-2007-3304"]}]},{"id":"CVE-2007-3303","published":"2007-06-20T22:30:00","updated_at":"2025-07-17T16:41:41.932093+00:00","description":"\nApache httpd 2.0.59 and 2.2.4, with the Prefork MPM module, allows local\nusers to cause a denial of service via certain code sequences executed in a\nworker process that (1) stop request processing by killing all worker\nprocesses and preventing creation of replacements or (2) hang the system by\nforcing the master process to fork an arbitrarily large number of worker\nprocesses. NOTE: This might be an inherent design limitation of Apache\nwith respect to worker processes in hosted environments.","ubuntu_description":"","notes":[{"author":"kees","note":"design problem, but only a DoS during arbitrary code exec, which would be the real issue"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3303"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"apache2","source":"https://ubuntu.com/security/cve?package=apache2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=apache2","debian":"https://tracker.debian.org/pkg/apache2","statuses":[{"release_codename":"dapper","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3299","published":"2007-06-20T22:30:00","updated_at":"2025-07-17T16:41:41.932093+00:00","description":"\nCross-site scripting (XSS) vulnerability in AWFFull before 3.7.4, when\nAllSearchStr (aka the All Search Terms report) is enabled, allows remote\nattackers to inject arbitrary web script or HTML via a search string.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3299"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"awffull","source":"https://ubuntu.com/security/cve?package=awffull","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=awffull","debian":"https://tracker.debian.org/pkg/awffull","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3294","published":"2007-06-20T21:30:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple buffer overflows in libtidy, as used in the Tidy extension for PHP\n5.2.3 and possibly other products, allow context-dependent attackers to\nexecute arbitrary code via (1) a long second argument to the\ntidy_parse_string function or (2) an unspecified vector to the\ntidy_repair_string function. NOTE: this might only be an issue in\nenvironments where vsnprintf is implemented as a wrapper for vsprintf.","ubuntu_description":"","notes":[{"author":"kees","note":"local malicious script"}],"codename":null,"priority":"negligible","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3294"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"edgy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"feisty","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"upstream","status":"ignored","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3285","published":"2007-06-20T19:30:00","updated_at":"2025-07-17T16:41:41.932093+00:00","description":"\nMozilla Firefox before 2.0.0.5, when run on Windows, allows remote\nattackers to bypass file type checks and possibly execute programs via a\n(1) file:/// or (2) resource: URI with a dangerous extension, followed by a\nNULL byte (%00) and a safer extension, which causes Firefox to treat the\nrequested file differently than Windows would.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-490-1","https://www.cve.org/CVERecord?id=CVE-2007-3285"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"dapper","status":"released","description":"1.5.dfsg+1.5.0.13~prepatch070731-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"2.0.0.6+0dfsg-0ubuntu0.6.10","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"2.0.0.6+1-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"iceape","source":"https://ubuntu.com/security/cve?package=iceape","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=iceape","debian":"https://tracker.debian.org/pkg/iceape","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"midbrowser","source":"https://ubuntu.com/security/cve?package=midbrowser","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=midbrowser","debian":"https://tracker.debian.org/pkg/midbrowser","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-490-1"],"notices":[{"id":"USN-490-1","title":"Firefox vulnerabilities","summary":"Firefox vulnerabilities","instructions":"After a standard system upgrade you need to restart Firefox to effect\nthe necessary changes.","references":[],"published":"2007-07-20T01:12:02","description":"Various flaws were discovered in the layout and JavaScript engines. By\ntricking a user into opening a malicious web page, an attacker could\nexecute arbitrary code with the user's privileges. (CVE-2007-3734,\nCVE-2007-3735)\n\nFlaws were discovered in the JavaScript methods addEventListener and\nsetTimeout which could be used to inject script into another site in\nviolation of the browser's same-origin policy. A malicious web site\ncould exploit this to modify the contents, or steal confidential data\n(such as passwords), of other web pages. (CVE-2007-3736)\n\nRonen Zilberman and Michal Zalewski discovered timing attacks in the\nJavaScript engine's use of about:blank frames. A malicious web site\ncould exploit this to modify the contents, or steal confidential data\n(such as passwords), of other web pages. (CVE-2007-3089)\n\nA flaw was discovered in the JavaScript event handling code. By tricking\na user into opening a malicious web page, an attacker could execute\narbitrary code with the user's privileges. (CVE-2007-3737)\n\nRonald van den Heetkamp discovered that filename URLs including an encoded\nnull byte could confuse the extension matching code. By tricking a user\ninto opening a malicious web page, an attacker could execute arbitrary\nhelper programs. (CVE-2007-3285)\n\nMichal Zalewski discovered flaws in the same-origin handling of cached\n\"wyciwyg://\" documents. A malicious web site could exploit this to\nmodify the contents, or steal confidential data (such as passwords),\nof other web pages. (CVE-2007-3656)\n\nVarious flaws were discovered in the XPCNativeWrapper method. By tricking\na user into opening a malicious web page, an attacker could execute\narbitrary code with the user's privileges. (CVE-2007-3738).","is_hidden":false,"release_packages":{"dapper":[{"name":"firefox","version":"1.5.dfsg+1.5.0.13~prepatch070716-0ubuntu1","is_source":false,"source_link":"","version_link":""}],"feisty":[{"name":"firefox","version":"2.0.0.5+1-0ubuntu1","is_source":false,"source_link":"","version_link":""}],"edgy":[{"name":"firefox","version":"2.0.0.5+0dfsg-0ubuntu0.6.10","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2007-3089","CVE-2007-3737","CVE-2007-3738","CVE-2007-3285","CVE-2007-3735","CVE-2007-3656","CVE-2007-3736","CVE-2007-3734"]}]},{"id":"CVE-2007-3283","published":"2007-06-19T22:30:00","updated_at":"2025-07-17T16:41:40.196422+00:00","description":"\nGNOME XScreenSaver in Sun Solaris 8 and 9 before 20070417, when root is\nlogged into the console, does not automatically lock the screen after a\nsession has been inactive, which might allow physically proximate attackers\nto access the console.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3283"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"xscreensaver","source":"https://ubuntu.com/security/cve?package=xscreensaver","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=xscreensaver","debian":"https://tracker.debian.org/pkg/xscreensaver","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3280","published":"2007-06-19T21:30:00","updated_at":"2025-07-17T16:41:40.196422+00:00","description":"\nThe Database Link library (dblink) in PostgreSQL 8.1 implements functions\nvia CREATE statements that map to arbitrary libraries based on the C\nprogramming language, which allows remote authenticated superusers to map\nand execute a function from any library, as demonstrated by using the\nsystem function in libc.so.6 to gain shell access.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3280"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"postgresql-8.1","source":"https://ubuntu.com/security/cve?package=postgresql-8.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=postgresql-8.1","debian":"https://tracker.debian.org/pkg/postgresql-8.1","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"postgresql-8.2","source":"https://ubuntu.com/security/cve?package=postgresql-8.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=postgresql-8.2","debian":"https://tracker.debian.org/pkg/postgresql-8.2","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3279","published":"2007-06-19T21:30:00","updated_at":"2025-07-17T16:41:40.196422+00:00","description":"\nPostgreSQL 8.1 and probably later versions, when the PL/pgSQL (plpgsql)\nlanguage has been created, grants certain plpgsql privileges to the PUBLIC\ndomain, which allows remote attackers to create and execute functions, as\ndemonstrated by functions that perform local brute-force password guessing\nattacks, which may evade intrusion detection.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2007-3279"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"postgresql-8.1","source":"https://ubuntu.com/security/cve?package=postgresql-8.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=postgresql-8.1","debian":"https://tracker.debian.org/pkg/postgresql-8.1","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"postgresql-8.2","source":"https://ubuntu.com/security/cve?package=postgresql-8.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=postgresql-8.2","debian":"https://tracker.debian.org/pkg/postgresql-8.2","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2007-3278","published":"2007-06-19T21:30:00","updated_at":"2025-07-17T16:41:40.196422+00:00","description":"\nPostgreSQL 8.1 and probably later versions, when local trust authentication\nis enabled and the Database Link library (dblink) is installed, allows\nremote attackers to access arbitrary accounts and execute arbitrary SQL\nqueries via a dblink host parameter that proxies the connection from\n127.0.0.1.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-568-1","https://www.cve.org/CVERecord?id=CVE-2007-3278"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"postgresql-8.1","source":"https://ubuntu.com/security/cve?package=postgresql-8.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=postgresql-8.1","debian":"https://tracker.debian.org/pkg/postgresql-8.1","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"postgresql-8.2","source":"https://ubuntu.com/security/cve?package=postgresql-8.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=postgresql-8.2","debian":"https://tracker.debian.org/pkg/postgresql-8.2","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-568-1"],"notices":[{"id":"USN-568-1","title":"PostgreSQL vulnerabilities","summary":"PostgreSQL vulnerabilities","instructions":"In general, a standard system upgrade is sufficient to effect the\nnecessary changes.\n","references":[],"published":"2008-01-14T19:28:47.970032","description":"Nico Leidecker discovered that PostgreSQL did not properly\nrestrict dblink functions. An authenticated user could exploit\nthis flaw to access arbitrary accounts and execute arbitrary\nSQL queries. (CVE-2007-3278, CVE-2007-6601)\n\nIt was discovered that the TCL regular expression parser used\nby PostgreSQL did not properly check its input. An attacker\ncould send crafted regular expressions to PostgreSQL and cause\na denial of service via resource exhaustion or database crash.\n(CVE-2007-4769, CVE-2007-4772, CVE-2007-6067)\n\nIt was discovered that PostgreSQL executed VACUUM and ANALYZE\noperations within index functions with superuser privileges and\nalso allowed SET ROLE and SET SESSION AUTHORIZATION within index\nfunctions. A remote authenticated user could exploit these flaws\nto gain privileges. (CVE-2007-6600)\n","is_hidden":false,"release_packages":{"gutsy":[{"name":"postgresql-8.2","version":"8.2.6-0ubuntu0.7.10.1","description":"","is_source":true},{"name":"postgresql-8.2","version":"8.2.6-0ubuntu0.7.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postgresql-8.2","version_link":"https://launchpad.net/ubuntu/+source/postgresql-8.2/8.2.6-0ubuntu0.7.10.1"},{"name":"postgresql-pltcl-8.2","version":"8.2.6-0ubuntu0.7.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postgresql-8.2","version_link":"https://launchpad.net/ubuntu/+source/postgresql-8.2/8.2.6-0ubuntu0.7.10.1"}],"dapper":[{"name":"postgresql-8.1","version":"8.1.11-0ubuntu0.6.06.1","description":"","is_source":true},{"name":"postgresql-8.1","version":"8.1.11-0ubuntu0.6.06.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postgresql-8.1","version_link":"https://launchpad.net/ubuntu/+source/postgresql-8.1/8.1.11-0ubuntu0.6.06.1"},{"name":"postgresql-pltcl-8.1","version":"8.1.11-0ubuntu0.6.06.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postgresql-8.1","version_link":"https://launchpad.net/ubuntu/+source/postgresql-8.1/8.1.11-0ubuntu0.6.06.1"}],"feisty":[{"name":"postgresql-8.2","version":"8.2.6-0ubuntu0.7.04.1","description":"","is_source":true},{"name":"postgresql-8.2","version":"8.2.6-0ubuntu0.7.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postgresql-8.2","version_link":"https://launchpad.net/ubuntu/+source/postgresql-8.2/8.2.6-0ubuntu0.7.04.1"},{"name":"postgresql-pltcl-8.2","version":"8.2.6-0ubuntu0.7.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postgresql-8.2","version_link":"https://launchpad.net/ubuntu/+source/postgresql-8.2/8.2.6-0ubuntu0.7.04.1"}],"edgy":[{"name":"postgresql-8.1","version":"8.1.11-0ubuntu0.6.10.1","description":"","is_source":true},{"name":"postgresql-8.1","version":"8.1.11-0ubuntu0.6.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postgresql-8.1","version_link":"https://launchpad.net/ubuntu/+source/postgresql-8.1/8.1.11-0ubuntu0.6.10.1"},{"name":"postgresql-pltcl-8.1","version":"8.1.11-0ubuntu0.6.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/postgresql-8.1","version_link":"https://launchpad.net/ubuntu/+source/postgresql-8.1/8.1.11-0ubuntu0.6.10.1"}]},"type":"USN","cves_ids":["CVE-2007-3278","CVE-2007-4769","CVE-2007-4772","CVE-2007-6067","CVE-2007-6600","CVE-2007-6601"]}]}],"offset":76440,"limit":20,"total_results":79316}