{"cves":[{"id":"CVE-2006-1656","published":"2006-04-06T10:04:00","updated_at":"2025-07-17T16:38:14.736069+00:00","description":"\nvserver in util-vserver 0.30.209 executes a command as root when the suexec\nuserid parameter is invalid and non-numeric, which might cause local users\nto inadvertently execute dangerous commands as root.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1656"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"util-vserver","source":"https://ubuntu.com/security/cve?package=util-vserver","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=util-vserver","debian":"https://tracker.debian.org/pkg/util-vserver","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1655","published":"2006-04-06T10:04:00","updated_at":"2025-07-17T16:38:14.736069+00:00","description":"\nMultiple buffer overflows in mpg123 0.59r allow user-assisted attackers to\ntrigger a segmentation fault and possibly have other impacts via a certain\nMP3 file, as demonstrated by mpg1DoS3. NOTE: this issue might be related\nto CVE-2004-0991, but it is not clear.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1655"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"mpg123","source":"https://ubuntu.com/security/cve?package=mpg123","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=mpg123","debian":"https://tracker.debian.org/pkg/mpg123","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.60-3","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.60-3","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"released","description":"0.60-3","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"0.60-3","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"0.60-3","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"0.60-3","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"0.60-3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1650","published":"2006-04-06T10:04:00","updated_at":"2025-07-17T16:38:14.736069+00:00","description":"\nFirefox 1.5.0.1 allows remote attackers to spoof the address bar and\npossibly conduct phishing attacks by re-opening the window to a malicious\nShockwave Flash application, then changing the window location back to a\ntrusted URL while the Flash application is still loading. NOTE: a followup\nwas unable to replicate this issue.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1650"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1055","published":"2006-04-05T17:04:00","updated_at":"2025-07-17T16:37:51.245515+00:00","description":"\nThe fill_write_buffer function in sysfs/file.c in Linux kernel 2.6.12 up to\nversions before 2.6.17-rc1 does not zero terminate a buffer when a length\nof PAGE_SIZE or more is requested, which might allow local users to cause a\ndenial of service (crash) by causing an out-of-bounds read.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-302-1","https://ubuntu.com/security/notices/USN-281-1","https://www.cve.org/CVERecord?id=CVE-2006-1055"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"linux-source-2.6.15","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.15","debian":"https://tracker.debian.org/pkg/linux-source-2.6.15","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"linux-source-2.6.17","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.17","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.17","debian":"https://tracker.debian.org/pkg/linux-source-2.6.17","statuses":[{"release_codename":"dapper","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"2.6.17.1-12.40","component":null,"pocket":"security"},{"release_codename":"feisty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-302-1","USN-281-1"],"notices":[{"id":"USN-302-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"After a standard system upgrade you need to reboot your computer to\neffect the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the Ubuntu 6.06 kernel\nupdate has been given a new version number, which requires you to\nrecompile and reinstall all third party kernel modules you might have\ninstalled. If you use linux-restricted-modules, you have to update\nthat package as well to get modules which work with the new kernel\nversion. Unless you manually uninstalled the standard kernel\nmetapackages (linux-386, linux-powerpc, linux-amd64-generic), a\nstandard system upgrade will automatically perform this as well.","references":[],"published":"2006-06-15T23:29:47","description":"An integer overflow was discovered in the do_replace() function. A\nlocal user process with the CAP_NET_ADMIN capability could exploit\nthis to execute arbitrary commands with full root privileges.\nHowever, none of Ubuntu's supported packages use this capability with\nany non-root user, so this only affects you if you use some third\nparty software like the OpenVZ virtualization system. (CVE-2006-0038)\n\nOn EMT64 CPUs, the kernel did not properly handle uncanonical return\naddresses. A local user could exploit this to trigger a kernel crash.\n(CVE-2006-0744)\n\nAl Viro discovered a local Denial of Service in the sysfs write buffer\nhandling. By writing a block with a length exactly equal to the\nprocessor's page size to any writable file in /sys, a local attacker\ncould cause a kernel crash. (CVE-2006-1055)\n\nJan Beulich discovered an information leak in the handling of\nregisters for the numeric coprocessor when running on AMD processors.\nThis allowed processes to see the coprocessor execution state of\nother processes, which could reveal sensitive data in the case of\ncryptographic computations. (CVE-2006-1056)\n\nMarcel Holtmann discovered that the sys_add_key() did not check that\na new user key is added to a proper keyring. By attempting to add a\nkey to a normal user key (which is not a keyring), a local attacker\ncould exploit this to crash the kernel. (CVE-2006-1522)\n\nIngo Molnar discovered that the SCTP protocol connection tracking\nmodule in netfilter got stuck in an infinite loop on certain empty\npacket chunks. A remote attacker could exploit this to cause the\ncomputer to hang. (CVE-2006-1527)\n\nThe SCSI I/O driver did not correctly handle the VM_IO flag for memory\nmapped pages used for data transfer. A local user could exploit this\nto cause a kernel crash. (CVE-2006-1528)\n\nThe choose_new_parent() contained obsolete debugging code. A local\nuser could exploit this to cause a kernel crash. (CVE-2006-1855)\n\nKostik Belousov discovered that the readv() and writev() functions did\nnot query LSM modules for access permission. This could be exploited\nto circumvent access restrictions defined by LSM modules such as\nSELinux or AppArmor. (CVE-2006-1856)\n\nThe SCTP driver did not properly verify certain parameters when\nreceiving a HB-ACK chunk. By sending a specially crafted packet to an\nSCTP socket, a remote attacker could exploit this to trigger a buffer\noverflow, which could lead to a crash or possibly even arbitrary code\nexecution. (CVE-2006-1857)\n\nThe sctp_walk_params() function in the SCTP driver incorrectly used\nrounded values for bounds checking instead of the precise values. By\nsending a specially crafted packet to an SCTP socket, a remote\nattacker could exploit this to crash the kernel. (CVE-2006-1858)\n\nBjoern Steinbrink reported a memory leak in the __setlease() function.\nA local attacker could exploit this to exhaust kernel memory and\nrender the computer unusable (Denial of Service). (CVE-2006-1859)\n\nDaniel Hokka Zakrisson discovered that the lease_init() did not\nproperly handle locking. A local attacker could exploit this to cause\na kernel deadlock (Denial of Service). (CVE-2006-1860)\n\nMark Moseley discovered that the CIFS file system driver did not\nfilter out \"..\\\\\" path components. A local attacker could exploit this\nto break out of a chroot environment on a mounted SMB share.\n(CVE-2006-1863) The same vulnerability applies to the older smb file\nsystem. (CVE-2006-1864)\n\nHugh Dickins discovered that the mprotect() function allowed an user\nto change a read-only shared memory attachment to become writable,\nwhich bypasses IPC (inter-process communication) permissions.\n(CVE-2006-2071)\n\nThe SCTP (Stream Control Transmission Protocol) driver triggered a\nkernel panic on unexpected packets while the session was in the CLOSED\nstate, instead of silently ignoring the packets. A remote attacker\ncould exploit this to crash the computer. (CVE-2006-2271)\n\nThe SCTP driver did not handle control chunks if they arrived in\nfragmented packets. By sending specially crafted packets to an SCTP\nsocket, a remote attacker could exploit this to crash the target\nmachine. (CVE-2006-2272)\n\nThe SCTP driver did not correctly handle packets containing more than\none DATA fragment. By sending specially crafted packets to an SCTP\nsocket, a remote attacker could exploit this to crash the target\nmachine. (CVE-2006-2274)\n\nThe SCTP driver did not correcly buffer incoming packets. By sending a\nlarge number of small messages to a receiver application that cannot\nprocess the messages quickly enough, a remote attacker could exploit\nthis to cause a deadlock in the target machine (Denial of Service).\n(CVE-2006-2275)\n\nPatrick McHardy discovered that the snmp_trap_decode() function did\nnot correctly handle memory allocation in some error conditions. By\nsending specially crafted packets to a machine which uses the SNMP\nnetwork address translation (NAT), a remote attacker could exploit\nthis to crash that machine. (CVE-2006-2444)\n\nIn addition, the Ubuntu 6.06 LTS update fixes a range of bugs.","is_hidden":false,"release_packages":{"dapper":[{"name":"linux-image-server","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-amd64-xeon","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-2.6.15-25-powerpc","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"nvidia-glx","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-powerpc-smp","version":"6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-2.6.15-25-powerpc-smp","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-2.6.15-25-amd64-generic","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-power4","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-686","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-amd64-k8-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-686","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-amd64-server","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-686","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-2.6.15-25-386","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"avm-fritz-kernel-source","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-2.6.15-25-amd64-k8","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-amd64-k8","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-power3-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-common","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"xorg-driver-fglrx","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-amd64-xeon","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"avm-fritz-firmware-2.6.15-25","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-source-2.6.15","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-386","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-386","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-k7","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-powerpc","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-amd64-generic","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-server","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"fglrx-control","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-k7","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"nvidia-glx-legacy","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-2.6.15-25-k7","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"nvidia-glx-legacy-dev","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-amd64-server","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-k7-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-powerpc-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"xorg-driver-fglrx-dev","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-powerpc","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-powerpc-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-amd64-k8","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-power4-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-power4-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-amd64-generic","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"fglrx-kernel-source","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-server","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-k7","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-amd64-k8","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-amd64-generic","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-power3","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-amd64-server","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-powerpc64-smp","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-amd64-xeon","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-386","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-amd64-k8","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-server-bigiron","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-amd64-xeon","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-powerpc64-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"nvidia-glx-dev","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-powerpc-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"avm-fritz-firmware","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-power3","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-power4","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-powerpc","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-k7","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-2.6.15-25-686","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-powerpc","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-amd64-generic","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-power3-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-server-bigiron","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-powerpc64-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-restricted-modules-2.6.15-25-amd64-xeon","version":"2.6.15.11-2","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-686","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.15-25-386","version":"2.6.15-25.43","is_source":false,"source_link":"","version_link":""},{"name":"linux-server-bigiron","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""},{"name":"linux-686-smp","version":"2.6.15.23","is_source":false,"source_link":"","version_link":""}],"hoary":[{"name":"linux-source-2.6.10","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power3-smp","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-ubuntu-2.6.10","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-generic","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-xeon","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power4","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-686-smp","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power3","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-k8-smp","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-powerpc-smp","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-686","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-k7-smp","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-powerpc","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-k8","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-386","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power4-smp","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-tree-2.6.10","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-k7","version":"2.6.10-34.20","is_source":false,"source_link":"","version_link":""}],"breezy":[{"name":"linux-image-2.6.12-10-amd64-k8-smp","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-686","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-source-2.6.12","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-generic","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-686-smp","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-ubuntu-2.6.12","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-k7-smp","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-k8","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-xeon","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-k7","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-tree-2.6.12","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-386","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc64-smp","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc-smp","version":"2.6.12-10.34","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2006-1856","CVE-2006-1857","CVE-2006-1522","CVE-2006-1859","CVE-2006-1864","CVE-2006-2071","CVE-2006-0038","CVE-2006-1860","CVE-2006-2275","CVE-2006-2272","CVE-2006-0744","CVE-2006-1528","CVE-2006-1055","CVE-2006-2444","CVE-2006-2271","CVE-2006-1858","CVE-2006-2274","CVE-2006-1527","CVE-2006-1855","CVE-2006-1056"]},{"id":"USN-281-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2006-05-04T17:50:59","description":"The sys_mbind() function did not properly verify the validity of the\n'maxnod' argument. A local user could exploit this to trigger a buffer\noverflow, which caused a kernel crash. (CVE-2006-0557)\n\nThe SELinux module did not correctly handle the tracer SID when a\nprocess was already being traced. A local attacker could exploit this\nto cause a kernel crash. (CVE-2006-1052)\n\nAl Viro discovered a local Denial of Service in the sysfs write buffer\nhandling. By writing a block with a length exactly equal to the\nprocessor's page size to any writable file in /sys, a local attacker\ncould cause a kernel crash. (CVE-2006-1055)\n\nJohn Blackwood discovered a race condition with single-step debugging\nmultiple processes at the same time. A local attacker could exploit\nthis to crash the system. This only affects the amd64 platform.\n(CVE-2006-1066)\n\nMarco Ivaldi discovered a flaw in the handling of the ID number of IP\npackets. This number was incremented after receiving unsolicited TCP\nSYN-ACK packets. A remote attacker could exploit this to conduct port\nscans with the 'Idle scan' method (nmap -sI), which bypassed intended\nport scan protections. (CVE-2006-1242)\n\nPavel Kankovsky discovered that the getsockopt() function, when called\nwith an SO_ORIGINAL_DST argument, does not properly clear the returned\nstructure, so that a random piece of kernel memory is exposed to the\nuser. This could potentially reveal sensitive data like passwords or\nencryption keys. (CVE-2006-1343)\n\nA buffer overflow was discovered in the USB Gadget RNDIS\nimplementation. While creating a reply message, the driver did not\nallocate enough memory for the reply structure. A remote attacker\ncould exploit this to cause a kernel crash. (CVE-2006-1368)\n\nAlexandra Kossovsky discovered an invalid memory access in the\nip_route_input() function. By using the 'ip' command in a particular\nway to retrieve multicast routes, a local attacker could exploit this\nto crash the kernel. (CVE-2006-1525)","is_hidden":false,"release_packages":{"hoary":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-hppa64-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-ubuntu-2.6.12","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-hppa32","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc64-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-iseries-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-hppa32-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-hppa64","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}],"breezy":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-hppa64-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-ubuntu-2.6.12","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-hppa32","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc64-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-iseries-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-hppa32-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-hppa64","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-6-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.12-10-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2006-1343","CVE-2006-1525","CVE-2006-0557","CVE-2006-1052","CVE-2006-1066","CVE-2006-1242","CVE-2006-1368","CVE-2006-1055"]}]},{"id":"CVE-2006-1624","published":"2006-04-05T10:04:00","updated_at":"2025-07-17T16:38:12.875063+00:00","description":"\nThe default configuration of syslogd in the Linux sysklogd package does not\nenable the -x (disable name lookups) option, which allows remote attackers\nto cause a denial of service (traffic amplification) via messages with\nspoofed source IP addresses.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1624"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"sysklogd","source":"https://ubuntu.com/security/cve?package=sysklogd","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=sysklogd","debian":"https://tracker.debian.org/pkg/sysklogd","statuses":[{"release_codename":"dapper","status":"not-affected","description":"network listening disabled by default","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"network listening disabled by default","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"network listening disabled by default","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-0051","published":"2006-04-05T10:04:00","updated_at":"2025-07-17T16:37:26.984010+00:00","description":"\nBuffer overflow in playlistimport.cpp in Kaffeine Player 0.4.2 through\n0.7.1 allows user-assisted attackers to execute arbitrary code via long\nHTTP request headers when Kaffeine is \"fetching remote playlists\", which\ntriggers the overflow in the http_peek function.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-268-1","https://www.cve.org/CVERecord?id=CVE-2006-0051"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"kaffeine","source":"https://ubuntu.com/security/cve?package=kaffeine","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=kaffeine","debian":"https://tracker.debian.org/pkg/kaffeine","statuses":[{"release_codename":"dapper","status":"released","description":"0.7.1-1.3ubuntu10","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.7.1-1.3ubuntu10","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.7.1-1.3ubuntu10","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-268-1"],"notices":[{"id":"USN-268-1","title":"Kaffeine vulnerability","summary":"Kaffeine vulnerability","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2006-04-07T01:56:55","description":"Marcus Meissner discovered a buffer overflow in the http_peek()\nfunction. By tricking an user into opening a specially crafted\nplaylist URL with Kaffeine, a remote attacker could exploit this to\nexecute arbitrary code with the user's privileges.","is_hidden":false,"release_packages":{"hoary":[{"name":"kaffeine","version":"","is_source":false,"source_link":"","version_link":""}],"breezy":[{"name":"kaffeine","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2006-0051"]}]},{"id":"CVE-2006-1603","published":"2006-04-04T10:04:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nCross-site scripting (XSS) vulnerability in profile.php in phpBB 2.0.19\nallows remote attackers to inject arbitrary web script or HTML via the\ncur_password parameter. NOTE: the provenance of this information is\nunknown; the details are obtained solely from third party information.","ubuntu_description":"","notes":[],"codename":null,"priority":"negligible","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1603"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"phpbb2","source":"https://ubuntu.com/security/cve?package=phpbb2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=phpbb2","debian":"https://tracker.debian.org/pkg/phpbb2","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"feisty","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"hardy","status":"not-affected","description":"2.0.22-3","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"not-affected","description":"2.0.23+repack-4","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.0.20","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1058","published":"2006-04-04T10:04:00","updated_at":"2025-07-17T16:37:51.245515+00:00","description":"\nBusyBox 1.1.1 does not use a salt when generating passwords, which makes it\neasier for local users to guess passwords from a stolen password file using\ntechniques such as rainbow tables.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1058"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"busybox","source":"https://ubuntu.com/security/cve?package=busybox","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=busybox","debian":"https://tracker.debian.org/pkg/busybox","statuses":[{"release_codename":"dapper","status":"released","description":"1.01-4ubuntu3","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1590","published":"2006-04-03T10:04:00","updated_at":"2025-07-17T16:38:12.875063+00:00","description":"\nCross-site scripting (XSS) vulnerability in the PrintFreshPage function in\n(1) Basic Analysis and Security Engine (BASE) 1.2.4 and (2) Analysis\nConsole for Intrusion Databases (ACID) 0.9.6b23 allows remote attackers to\ninject arbitrary web script or HTML via the (a) back parameter to\nbase_graph_main.php, (b) netmask parameter to base_stat_ipaddr.php, or (c)\nsubmit parameter to base_qry_alert.php within BASE, or (d) query string to\nacid_main.php in ACID, which causes the request URI\n($_SERVER['REQUEST_URI']) to be inserted into a refresh operation.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1590"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"acidbase","source":"https://ubuntu.com/security/cve?package=acidbase","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=acidbase","debian":"https://tracker.debian.org/pkg/acidbase","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"1.2.5-1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"1.2.5-1","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"released","description":"1.2.5-1","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"1.2.5-1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"1.2.5-1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"1.2.5-1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"1.2.5-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1577","published":"2006-04-02T21:04:00","updated_at":"2025-07-17T16:38:12.875063+00:00","description":"\nMultiple cross-site scripting (XSS) vulnerabilities in view_all_set.php in\nMantis 1.0.1, 1.0.0rc5, and earlier allow remote attackers to inject\narbitrary web script or HTML via the (1) start_day, (2) start_year, and (3)\nstart_month parameters.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1577"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"mantis","source":"https://ubuntu.com/security/cve?package=mantis","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=mantis","debian":"https://tracker.debian.org/pkg/mantis","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.19.4-3.2","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.19.4-3.2","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"released","description":"0.19.4-3.2","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"0.19.4-3.2","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"0.19.4-3.2","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"0.19.4-3.2","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"0.19.4-3.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1566","published":"2006-03-31T11:06:00","updated_at":"2025-07-17T16:38:12.875063+00:00","description":"\nUntrusted search path vulnerability in libtunepimp-perl 0.4.2-1 in Debian\nGNU/Linux includes an RPATH value under the /tmp/buildd directory for the\ntunepimp.so module, which might allow local users to gain privileges by\ninstalling malicious libraries in that directory.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1566"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"libtunepimp","source":"https://ubuntu.com/security/cve?package=libtunepimp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libtunepimp","debian":"https://tracker.debian.org/pkg/libtunepimp","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1565","published":"2006-03-31T11:06:00","updated_at":"2025-07-17T16:38:12.875063+00:00","description":"\nUntrusted search path vulnerability in libgpib-perl 3.2.06-2 in Debian\nGNU/Linux includes an RPATH value under the /tmp/buildd directory for the\nLinuxGpib.so module, which might allow local users to gain privileges by\ninstalling malicious libraries in that directory.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1565"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"gpib","source":"https://ubuntu.com/security/cve?package=gpib","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gpib","debian":"https://tracker.debian.org/pkg/gpib","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1564","published":"2006-03-31T11:06:00","updated_at":"2025-07-17T16:38:12.875063+00:00","description":"\nUntrusted search path vulnerability in libapache2-svn 1.3.0-4 for\nSubversion in Debian GNU/Linux includes RPATH values under the /tmp/svn\ndirectory for the (1) mod_authz_svn.so and (2) mod_dav_svn.so modules,\nwhich might allow local users to gain privileges by installing malicious\nlibraries in that directory.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1564"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"subversion","source":"https://ubuntu.com/security/cve?package=subversion","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=subversion","debian":"https://tracker.debian.org/pkg/subversion","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-0052","published":"2006-03-31T11:06:00","updated_at":"2025-07-17T16:37:26.984010+00:00","description":"\nThe attachment scrubber (Scrubber.py) in Mailman 2.1.5 and earlier, when\nusing Python's library email module 2.5, allows remote attackers to cause a\ndenial of service (mailing list delivery failure) via a multipart MIME\nmessage with a single part that has two blank lines between the first\nboundary and the end boundary.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-267-1","https://www.cve.org/CVERecord?id=CVE-2006-0052"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"mailman","source":"https://ubuntu.com/security/cve?package=mailman","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=mailman","debian":"https://tracker.debian.org/pkg/mailman","statuses":[{"release_codename":"dapper","status":"released","description":"2.1.5-9ubuntu4.1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"2.1.8-2ubuntu2","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.1.6","component":null,"pocket":"security"}]}],"notices_ids":["USN-267-1"],"notices":[{"id":"USN-267-1","title":"mailman vulnerability","summary":"mailman vulnerability","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2006-04-04T00:44:00","description":"A remote Denial of Service vulnerability was discovered in the decoder\nfor multipart messages. Certain parts of type \"message/delivery-status\"\nor parts containing only two blank lines triggered an exception. An\nattacker could exploit this to crash Mailman by sending a\nspecially crafted email to a mailing list.","is_hidden":false,"release_packages":{"hoary":[{"name":"mailman","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"mailman","version":"","is_source":false,"source_link":"","version_link":""}],"breezy":[{"name":"mailman","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2006-0052"]}]},{"id":"CVE-2006-1550","published":"2006-03-30T23:02:00","updated_at":"2025-07-17T16:38:12.875063+00:00","description":"\nMultiple buffer overflows in the xfig import code (xfig-import.c) in Dia\n0.87 and later before 0.95-pre6 allow user-assisted attackers to have an\nunknown impact via a crafted xfig file, possibly involving an invalid (1)\ncolor index, (2) number of points, or (3) depth.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-266-1","https://www.cve.org/CVERecord?id=CVE-2006-1550"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"dia","source":"https://ubuntu.com/security/cve?package=dia","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=dia","debian":"https://tracker.debian.org/pkg/dia","statuses":[{"release_codename":"dapper","status":"released","description":"0.94.0-17.1ubuntu3","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-266-1"],"notices":[{"id":"USN-266-1","title":"dia vulnerabilities","summary":"dia vulnerabilities","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2006-04-03T21:33:11","description":"Three buffer overflows were discovered in the Xfig file format\nimporter. By tricking a user into opening a specially crafted .fig\nfile with dia, an attacker could exploit this to execute arbitrary\ncode with the user's privileges.","is_hidden":false,"release_packages":{"hoary":[{"name":"dia-gnome","version":"","is_source":false,"source_link":"","version_link":""},{"name":"dia","version":"","is_source":false,"source_link":"","version_link":""},{"name":"dia-libs","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"dia-gnome","version":"","is_source":false,"source_link":"","version_link":""},{"name":"dia","version":"","is_source":false,"source_link":"","version_link":""},{"name":"dia-libs","version":"","is_source":false,"source_link":"","version_link":""}],"breezy":[{"name":"dia-gnome","version":"","is_source":false,"source_link":"","version_link":""},{"name":"dia","version":"","is_source":false,"source_link":"","version_link":""},{"name":"dia-libs","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2006-1550"]}]},{"id":"CVE-2006-1548","published":"2006-03-30T22:02:00","updated_at":"2025-07-17T16:38:11.111921+00:00","description":"\nCross-site scripting (XSS) vulnerability in (1) LookupDispatchAction and\npossibly (2) DispatchAction and (3) ActionDispatcher in Apache Software\nFoundation (ASF) Struts before 1.2.9 allows remote attackers to inject\narbitrary web script or HTML via the parameter name, which is not filtered\nin the resulting error message.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1548"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"libstruts1.2-java","source":"https://ubuntu.com/security/cve?package=libstruts1.2-java","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libstruts1.2-java","debian":"https://tracker.debian.org/pkg/libstruts1.2-java","statuses":[{"release_codename":"dapper","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1547","published":"2006-03-30T22:02:00","updated_at":"2025-07-17T16:38:11.111921+00:00","description":"\nActionForm in Apache Software Foundation (ASF) Struts before 1.2.9 with\nBeanUtils 1.7 allows remote attackers to cause a denial of service via a\nmultipart/form-data encoded form with a parameter name that references the\npublic getMultipartRequestHandler method, which provides further access to\nelements in the CommonsMultipartRequestHandler implementation and\nBeanUtils.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1547","https://www.cisa.gov/known-exploited-vulnerabilities-catalog"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"libstruts1.2-java","source":"https://ubuntu.com/security/cve?package=libstruts1.2-java","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libstruts1.2-java","debian":"https://tracker.debian.org/pkg/libstruts1.2-java","statuses":[{"release_codename":"dapper","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1546","published":"2006-03-30T22:02:00","updated_at":"2025-07-17T16:38:11.111921+00:00","description":"\nApache Software Foundation (ASF) Struts before 1.2.9 allows remote\nattackers to bypass validation via a request with a\n'org.apache.struts.taglib.html.Constants.CANCEL' parameter, which causes\nthe action to be canceled but would not be detected from applications that\ndo not use the isCancelled check.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1546"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"libstruts1.2-java","source":"https://ubuntu.com/security/cve?package=libstruts1.2-java","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libstruts1.2-java","debian":"https://tracker.debian.org/pkg/libstruts1.2-java","statuses":[{"release_codename":"dapper","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"1.2.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1059","published":"2006-03-30T17:06:00","updated_at":"2025-07-17T16:37:51.245515+00:00","description":"\nThe winbindd daemon in Samba 3.0.21 to 3.0.21c writes the machine trust\naccount password in cleartext in log files, which allows local users to\nobtain the password and spoof the server in the domain.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1059"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"samba","source":"https://ubuntu.com/security/cve?package=samba","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=samba","debian":"https://tracker.debian.org/pkg/samba","statuses":[{"release_codename":"dapper","status":"released","description":"3.0.22-1ubuntu3.3","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"3.0.22-1ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"3.0.24-2ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2006-1542","published":"2006-03-30T11:02:00","updated_at":"2025-07-17T16:38:11.111921+00:00","description":"\nStack-based buffer overflow in Python 2.4.2 and earlier, running on Linux\n2.6.12.5 under gcc 4.0.3 with libc 2.3.5, allows local users to cause a\n\"stack overflow,\" and possibly gain privileges, by running a script from a\ncurrent working directory that has a long name, related to the realpath\nfunction. NOTE: this might not be a vulnerability. However, the fact that\nit appears in a programming language interpreter could mean that some\napplications are affected, although attack scenarios might be limited\nbecause the attacker might already need to cross privilege boundaries to\ncause an exploitable program to be placed in a directory with a long name;\nor, depending on the method that Python uses to determine the current\nworking directory, setuid applications might be affected.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2006-1542"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"python2.3","source":"https://ubuntu.com/security/cve?package=python2.3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=python2.3","debian":"https://tracker.debian.org/pkg/python2.3","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":77680,"limit":20,"total_results":79316}