{"cves":[{"id":"CVE-2005-3163","published":"2005-10-06T10:02:00","updated_at":"2025-07-17T16:36:40.724481+00:00","description":"\nUnspecified vulnerability in Polipo 0.9.8 and earlier allows attackers to\nread files outside of the web root.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3163"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"polipo","source":"https://ubuntu.com/security/cve?package=polipo","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=polipo","debian":"https://tracker.debian.org/pkg/polipo","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.9.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.9.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"released","description":"0.9.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"hardy","status":"released","description":"0.9.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"released","description":"0.9.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"released","description":"0.9.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"karmic","status":"released","description":"0.9.9-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3150","published":"2005-10-05T22:02:00","updated_at":"2025-07-17T16:36:40.724481+00:00","description":"\nFormat string vulnerability in the Log_Flush function in Weex 2.6.1.5,\n2.6.1, and possibly other versions allows remote FTP servers to execute\narbitrary code via format strings in filenames.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3150"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"weex","source":"https://ubuntu.com/security/cve?package=weex","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=weex","debian":"https://tracker.debian.org/pkg/weex","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3149","published":"2005-10-05T22:02:00","updated_at":"2025-07-17T16:36:40.724481+00:00","description":"\nUim 0.4.x before 0.4.9.1 and 0.5.0 and earlier does not properly handle the\nLIBUIM_VANILLA environment variable when a suid or sgid application is\nlinked to libuim, such as immodule for Qt, which allows local users to gain\nprivileges.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3149"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"uim","source":"https://ubuntu.com/security/cve?package=uim","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=uim","debian":"https://tracker.debian.org/pkg/uim","statuses":[{"release_codename":"dapper","status":"released","description":"1.0.0-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"1.0.0-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"1.0.0-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3148","published":"2005-10-05T21:02:00","updated_at":"2025-07-17T16:36:40.724481+00:00","description":"\nStoreBackup before 1.19 does not properly set the uid and guid for symbolic\nlinks (1) that are backed up by storeBackup.pl, or (2) recovered by\nstoreBackupRecover.pl, which could cause files to be restored with\nincorrect ownership.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3148"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"storebackup","source":"https://ubuntu.com/security/cve?package=storebackup","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=storebackup","debian":"https://tracker.debian.org/pkg/storebackup","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3147","published":"2005-10-05T21:02:00","updated_at":"2025-07-17T16:36:40.724481+00:00","description":"\nStoreBackup before 1.19 creates the backup root with world-readable\npermissions, which allows local users to obtain sensitive information.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3147"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"storebackup","source":"https://ubuntu.com/security/cve?package=storebackup","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=storebackup","debian":"https://tracker.debian.org/pkg/storebackup","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3146","published":"2005-10-05T21:02:00","updated_at":"2025-07-17T16:36:40.724481+00:00","description":"\nStoreBackup before 1.19 allows local users to perform unauthorized\noperations on arbitrary files via a symlink attack on temporary files.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3146"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"storebackup","source":"https://ubuntu.com/security/cve?package=storebackup","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=storebackup","debian":"https://tracker.debian.org/pkg/storebackup","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3139","published":"2005-10-05T21:02:00","updated_at":"2025-07-17T16:36:40.724481+00:00","description":"\nBugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on in\nsubstring mode, allows attackers to list all users whose names match an\narbitrary substring, even when the usevisibilitygroups parameter is set.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3139"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"bugzilla","source":"https://ubuntu.com/security/cve?package=bugzilla","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=bugzilla","debian":"https://tracker.debian.org/pkg/bugzilla","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.20","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3138","published":"2005-10-05T21:02:00","updated_at":"2025-07-17T16:36:39.257706+00:00","description":"\nBugzilla 2.18rc1 through 2.18.3, 2.19 through 2.20rc2, and 2.21 allows\nremote attackers to obtain sensitive information such as the list of\ninstalled products via the config.cgi file, which is accessible even when\nthe requirelogin parameter is set.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3138"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"bugzilla","source":"https://ubuntu.com/security/cve?package=bugzilla","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=bugzilla","debian":"https://tracker.debian.org/pkg/bugzilla","statuses":[{"release_codename":"dapper","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"edgy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"feisty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.20","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-2966","published":"2005-10-05T21:02:00","updated_at":"2025-07-17T16:36:32.239428+00:00","description":"\nThe Python SVG import plugin (diasvg_import.py) for DIA 0.94 and earlier\nallows user-assisted attackers to execute arbitrary commands via a crafted\nSVG file.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-193-1","https://www.cve.org/CVERecord?id=CVE-2005-2966"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"dia","source":"https://ubuntu.com/security/cve?package=dia","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=dia","debian":"https://tracker.debian.org/pkg/dia","statuses":[{"release_codename":"dapper","status":"released","description":"0.94.0-17.1ubuntu3","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.94.0-17.1ubuntu3","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.94.0-17.1ubuntu3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-193-1"],"notices":[{"id":"USN-193-1","title":"dia vulnerability","summary":"dia vulnerability","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2005-10-04T21:20:20","description":"Joxean Koret discovered that the SVG import plugin did not properly\nsanitise data read from an SVG file. By tricking an user into opening\na specially crafted SVG file, an attacker could exploit this to\nexecute arbitrary code with the privileges of the user.","is_hidden":false,"release_packages":{"hoary":[{"name":"dia-common","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2005-2966"]}]},{"id":"CVE-2005-0023","published":"2005-10-05T21:02:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\ngnome-pty-helper in GNOME libzvt2 and libvte4 allows local users to spoof\nthe logon hostname via a modified DISPLAY environment variable. NOTE: the\nseverity of this issue has been disputed.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"upstream doesn't consider this a security issue. Marking as\nignored."}],"codename":null,"priority":"negligible","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-0023"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=329156","http://bugzilla.gnome.org/show_bug.cgi?id=317312"],"patches":{},"tags":{},"packages":[{"name":"gnome-libs","source":"https://ubuntu.com/security/cve?package=gnome-libs","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gnome-libs","debian":"https://tracker.debian.org/pkg/gnome-libs","statuses":[{"release_codename":"dapper","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"edgy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"feisty","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"gutsy","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"hardy","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"intrepid","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"jaunty","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"karmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3137","published":"2005-10-05T19:02:00","updated_at":"2025-07-17T16:36:39.257706+00:00","description":"\nThe (1) cfmailfilter and (2) cfcron.in files for cfengine 1.6.5 allow local\nusers to overwrite arbitrary files via a symlink attack on temporary files,\na different vulnerability than CVE-2005-2960.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-198-1","https://www.cve.org/CVERecord?id=CVE-2005-3137"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"cfengine","source":"https://ubuntu.com/security/cve?package=cfengine","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=cfengine","debian":"https://tracker.debian.org/pkg/cfengine","statuses":[{"release_codename":"dapper","status":"released","description":"1.6.5-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"1.6.5-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-198-1"],"notices":[{"id":"USN-198-1","title":"cfengine vulnerabilities","summary":"cfengine vulnerabilities","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2005-10-10T23:55:38","description":"Javier Fernández-Sanguino Peña discovered that several tools in the\ncfengine package (vicf, cfmailfilter, and cfcron) create and use\ntemporary files in an insecure way. A local attacker could exploit\nthis with a symlink attack to create or overwrite arbitrary files with\nthe privileges of the user running the cfengine program.","is_hidden":false,"release_packages":{"hoary":[{"name":"cfengine","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"cfengine","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2005-2960","CVE-2005-3137"]}]},{"id":"CVE-2005-2960","published":"2005-10-05T19:02:00","updated_at":"2025-07-17T16:36:32.239428+00:00","description":"\ncfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files\nvia a symlink attack on temporary files used by vicf.in, a different\nvulnerability than CVE-2005-3137.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-198-1","https://www.cve.org/CVERecord?id=CVE-2005-2960"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"cfengine","source":"https://ubuntu.com/security/cve?package=cfengine","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=cfengine","debian":"https://tracker.debian.org/pkg/cfengine","statuses":[{"release_codename":"dapper","status":"released","description":"1.6.5-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"1.6.5-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"feisty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-198-1"],"notices":[{"id":"USN-198-1","title":"cfengine vulnerabilities","summary":"cfengine vulnerabilities","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2005-10-10T23:55:38","description":"Javier Fernández-Sanguino Peña discovered that several tools in the\ncfengine package (vicf, cfmailfilter, and cfcron) create and use\ntemporary files in an insecure way. A local attacker could exploit\nthis with a symlink attack to create or overwrite arbitrary files with\nthe privileges of the user running the cfengine program.","is_hidden":false,"release_packages":{"hoary":[{"name":"cfengine","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"cfengine","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2005-2960","CVE-2005-3137"]}]},{"id":"CVE-2005-2660","published":"2005-09-30T19:10:00","updated_at":"2025-07-17T16:36:23.034283+00:00","description":"\napachetop 0.12.5 and earlier, when running in debug mode, allows local\nusers to create or append to arbitrary files via a symlink attack on\natop.debug.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-2660"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"apachetop","source":"https://ubuntu.com/security/cve?package=apachetop","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=apachetop","debian":"https://tracker.debian.org/pkg/apachetop","statuses":[{"release_codename":"dapper","status":"released","description":"0.12.5-7","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.12.5-7","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.12.5-7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-2962","published":"2005-09-30T18:05:00","updated_at":"2025-07-17T16:36:32.239428+00:00","description":"\nThe post-installation script for ntlmaps before 0.9.9 sets world-readable\npermissions for the configuration file, which allows local users to obtain\nthe username and password.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-2962"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"ntlmaps","source":"https://ubuntu.com/security/cve?package=ntlmaps","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ntlmaps","debian":"https://tracker.debian.org/pkg/ntlmaps","statuses":[{"release_codename":"gutsy","status":"released","description":"0.9.9-4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"dapper","status":"released","description":"0.9.9-4","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.9.9-4","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.9.9-4","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-2917","published":"2005-09-30T18:05:00","updated_at":"2025-07-17T16:36:29.317039+00:00","description":"\nSquid 2.5.STABLE10 and earlier, while performing NTLM authentication, does\nnot properly handle certain request sequences, which allows attackers to\ncause a denial of service (daemon restart).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-192-1","https://www.cve.org/CVERecord?id=CVE-2005-2917"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"squid","source":"https://ubuntu.com/security/cve?package=squid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=squid","debian":"https://tracker.debian.org/pkg/squid","statuses":[{"release_codename":"dapper","status":"released","description":"2.5.12-4ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"2.6.1-3ubuntu1.3","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"2.6.5-4ubuntu2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-192-1"],"notices":[{"id":"USN-192-1","title":"Squid vulnerability","summary":"Squid vulnerability","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2005-10-01T00:45:45","description":"Mike Diggins discovered a remote Denial of Service vulnerability in\nSquid. Sending specially crafted NTML authentication requests to Squid\ncaused the server to crash.","is_hidden":false,"release_packages":{"hoary":[{"name":"squid","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"squid","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2005-2917"]}]},{"id":"CVE-2005-3111","published":"2005-09-30T10:05:00","updated_at":"2025-07-17T16:36:37.523425+00:00","description":"\nThe handler code for backupninja 0.8 and earlier creates temporary files\nwith predictable filenames, which allows local users to modify arbitrary\nfiles via a symlink attack.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2005-3111"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"backupninja","source":"https://ubuntu.com/security/cve?package=backupninja","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=backupninja","debian":"https://tracker.debian.org/pkg/backupninja","statuses":[{"release_codename":"dapper","status":"released","description":"0.9.2-3","component":null,"pocket":"security"},{"release_codename":"edgy","status":"released","description":"0.9.2-3","component":null,"pocket":"security"},{"release_codename":"feisty","status":"released","description":"0.9.2-3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2005-3110","published":"2005-09-30T10:05:00","updated_at":"2025-07-17T16:36:37.523425+00:00","description":"\nRace condition in ebtables netfilter module (ebtables.c) in Linux 2.6, when\nrunning on an SMP system that is operating under a heavy load, might allow\nremote attackers to cause a denial of service (crash) via a series of\npackets that cause a value to be modified after it has been read but before\nit has been locked.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-199-1","https://www.cve.org/CVERecord?id=CVE-2005-3110"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"linux-source-2.6.12","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.12","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.12","debian":"https://tracker.debian.org/pkg/linux-source-2.6.12","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-199-1"],"notices":[{"id":"USN-199-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2005-10-11T01:22:25","description":"A Denial of Service vulnerability was discovered in the\nsys_set_mempolicy() function. By calling the function with a negative\nfirst argument, a local attacker could cause a kernel crash.\n(CAN-2005-3053)\n\nA race condition was discovered in the handling of shared memory\nmappings with CLONE_VM. A local attacker could exploit this to cause a\ndeadlock (Denial of Service) by triggering a core dump while waiting\nfor a thread which had just performed an exec() system call.\n(CAN-2005-3106)\n\nA race condition was found in the handling of traced processes. When\none thread was tracing another thread that shared the same memory map,\na local attacker could trigger a deadlock (Denial of Service) by\nforcing a core dump when the traced thread was in the TASK_TRACED\nstate. (CAN-2005-3107)\n\nA vulnerability has been found in the \"ioremap\" module. By performing\ncertain IO mapping operations, a local attacker could either read\nmemory pages he has not normally access to (information leak) or cause\na kernel crash (Denial of Service). This only affects the amd64\nplatform. (CAN-2005-3108)\n\nThe HFS and HFS+ file system drivers did not properly verify that the\nfile system that was attempted to be mounted really was HFS/HFS+. On\nmachines which allow users to mount arbitrary removable devices as HFS\nor HFS+ with an /etc/fstab entry, this could be exploited to trigger a\nkernel crash. (CAN-2005-3109)\n\nSteve Herrel discovered a race condition in the \"ebtables\" netfilter\nmodule. A remote attacker could exploit this by sending specially\ncrafted packets that caused a value to be modified after it had\nbeen read but before it had been locked. This eventually lead to a\nkernel crash. This only affects multiprocessor machines (SMP).\n(CAN-2005-3110)\n\nRobert Derr discovered a memory leak in the system call auditing code.\nOn a kernel which has the CONFIG_AUDITSYSCALL option enabled, this\nleads to memory exhaustion and eventually a Denial of Service. A local\nattacker could also speed this up by excessively calling system calls.\nThis only affects customized kernels built from the kernel source\npackages. The standard Ubuntu kernel does not have the\nCONFIG_AUDITSYSCALL option enabled, and is therefore not affected by\nthis.\n(http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=829841146878e082613a49581ae252c071057c23)","is_hidden":false,"release_packages":{"hoary":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-debian-2.6.8.1","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-debian-2.6.8.1","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2005-3053","CVE-2005-3106","CVE-2005-3107","CVE-2005-3108","CVE-2005-3109","CVE-2005-3110"]}]},{"id":"CVE-2005-3109","published":"2005-09-30T10:05:00","updated_at":"2025-07-17T16:36:37.523425+00:00","description":"\nThe HFS and HFS+ (hfsplus) modules in Linux 2.6 allow attackers to cause a\ndenial of service (oops) by using hfsplus to mount a filesystem that is not\nhfsplus.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-199-1","https://www.cve.org/CVERecord?id=CVE-2005-3109"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"linux-source-2.6.12","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.12","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.12","debian":"https://tracker.debian.org/pkg/linux-source-2.6.12","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-199-1"],"notices":[{"id":"USN-199-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2005-10-11T01:22:25","description":"A Denial of Service vulnerability was discovered in the\nsys_set_mempolicy() function. By calling the function with a negative\nfirst argument, a local attacker could cause a kernel crash.\n(CAN-2005-3053)\n\nA race condition was discovered in the handling of shared memory\nmappings with CLONE_VM. A local attacker could exploit this to cause a\ndeadlock (Denial of Service) by triggering a core dump while waiting\nfor a thread which had just performed an exec() system call.\n(CAN-2005-3106)\n\nA race condition was found in the handling of traced processes. When\none thread was tracing another thread that shared the same memory map,\na local attacker could trigger a deadlock (Denial of Service) by\nforcing a core dump when the traced thread was in the TASK_TRACED\nstate. (CAN-2005-3107)\n\nA vulnerability has been found in the \"ioremap\" module. By performing\ncertain IO mapping operations, a local attacker could either read\nmemory pages he has not normally access to (information leak) or cause\na kernel crash (Denial of Service). This only affects the amd64\nplatform. (CAN-2005-3108)\n\nThe HFS and HFS+ file system drivers did not properly verify that the\nfile system that was attempted to be mounted really was HFS/HFS+. On\nmachines which allow users to mount arbitrary removable devices as HFS\nor HFS+ with an /etc/fstab entry, this could be exploited to trigger a\nkernel crash. (CAN-2005-3109)\n\nSteve Herrel discovered a race condition in the \"ebtables\" netfilter\nmodule. A remote attacker could exploit this by sending specially\ncrafted packets that caused a value to be modified after it had\nbeen read but before it had been locked. This eventually lead to a\nkernel crash. This only affects multiprocessor machines (SMP).\n(CAN-2005-3110)\n\nRobert Derr discovered a memory leak in the system call auditing code.\nOn a kernel which has the CONFIG_AUDITSYSCALL option enabled, this\nleads to memory exhaustion and eventually a Denial of Service. A local\nattacker could also speed this up by excessively calling system calls.\nThis only affects customized kernels built from the kernel source\npackages. The standard Ubuntu kernel does not have the\nCONFIG_AUDITSYSCALL option enabled, and is therefore not affected by\nthis.\n(http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=829841146878e082613a49581ae252c071057c23)","is_hidden":false,"release_packages":{"hoary":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-debian-2.6.8.1","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-debian-2.6.8.1","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2005-3053","CVE-2005-3106","CVE-2005-3107","CVE-2005-3108","CVE-2005-3109","CVE-2005-3110"]}]},{"id":"CVE-2005-3108","published":"2005-09-30T10:05:00","updated_at":"2025-07-17T16:36:37.523425+00:00","description":"\nmm/ioremap.c in Linux 2.6 on 64-bit x86 systems allows local users to cause\na denial of service or an information leak via an ioremap on a certain\nmemory map that causes the iounmap to perform a lookup of a page that does\nnot exist.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-199-1","https://www.cve.org/CVERecord?id=CVE-2005-3108"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"linux-source-2.6.12","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.12","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.12","debian":"https://tracker.debian.org/pkg/linux-source-2.6.12","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-199-1"],"notices":[{"id":"USN-199-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2005-10-11T01:22:25","description":"A Denial of Service vulnerability was discovered in the\nsys_set_mempolicy() function. By calling the function with a negative\nfirst argument, a local attacker could cause a kernel crash.\n(CAN-2005-3053)\n\nA race condition was discovered in the handling of shared memory\nmappings with CLONE_VM. A local attacker could exploit this to cause a\ndeadlock (Denial of Service) by triggering a core dump while waiting\nfor a thread which had just performed an exec() system call.\n(CAN-2005-3106)\n\nA race condition was found in the handling of traced processes. When\none thread was tracing another thread that shared the same memory map,\na local attacker could trigger a deadlock (Denial of Service) by\nforcing a core dump when the traced thread was in the TASK_TRACED\nstate. (CAN-2005-3107)\n\nA vulnerability has been found in the \"ioremap\" module. By performing\ncertain IO mapping operations, a local attacker could either read\nmemory pages he has not normally access to (information leak) or cause\na kernel crash (Denial of Service). This only affects the amd64\nplatform. (CAN-2005-3108)\n\nThe HFS and HFS+ file system drivers did not properly verify that the\nfile system that was attempted to be mounted really was HFS/HFS+. On\nmachines which allow users to mount arbitrary removable devices as HFS\nor HFS+ with an /etc/fstab entry, this could be exploited to trigger a\nkernel crash. (CAN-2005-3109)\n\nSteve Herrel discovered a race condition in the \"ebtables\" netfilter\nmodule. A remote attacker could exploit this by sending specially\ncrafted packets that caused a value to be modified after it had\nbeen read but before it had been locked. This eventually lead to a\nkernel crash. This only affects multiprocessor machines (SMP).\n(CAN-2005-3110)\n\nRobert Derr discovered a memory leak in the system call auditing code.\nOn a kernel which has the CONFIG_AUDITSYSCALL option enabled, this\nleads to memory exhaustion and eventually a Denial of Service. A local\nattacker could also speed this up by excessively calling system calls.\nThis only affects customized kernels built from the kernel source\npackages. The standard Ubuntu kernel does not have the\nCONFIG_AUDITSYSCALL option enabled, and is therefore not affected by\nthis.\n(http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=829841146878e082613a49581ae252c071057c23)","is_hidden":false,"release_packages":{"hoary":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-debian-2.6.8.1","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-debian-2.6.8.1","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2005-3053","CVE-2005-3106","CVE-2005-3107","CVE-2005-3108","CVE-2005-3109","CVE-2005-3110"]}]},{"id":"CVE-2005-3107","published":"2005-09-30T10:05:00","updated_at":"2025-07-17T16:36:37.523425+00:00","description":"\nfs/exec.c in Linux 2.6, when one thread is tracing another thread that\nshares the same memory map, might allow local users to cause a denial of\nservice (deadlock) by forcing a core dump when the traced thread is in the\nTASK_TRACED state.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-199-1","https://www.cve.org/CVERecord?id=CVE-2005-3107"],"bugs":[""],"patches":{},"tags":{},"packages":[{"name":"linux-source-2.6.12","source":"https://ubuntu.com/security/cve?package=linux-source-2.6.12","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-source-2.6.12","debian":"https://tracker.debian.org/pkg/linux-source-2.6.12","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-199-1"],"notices":[{"id":"USN-199-1","title":"Linux kernel vulnerabilities","summary":"Linux kernel vulnerabilities","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2005-10-11T01:22:25","description":"A Denial of Service vulnerability was discovered in the\nsys_set_mempolicy() function. By calling the function with a negative\nfirst argument, a local attacker could cause a kernel crash.\n(CAN-2005-3053)\n\nA race condition was discovered in the handling of shared memory\nmappings with CLONE_VM. A local attacker could exploit this to cause a\ndeadlock (Denial of Service) by triggering a core dump while waiting\nfor a thread which had just performed an exec() system call.\n(CAN-2005-3106)\n\nA race condition was found in the handling of traced processes. When\none thread was tracing another thread that shared the same memory map,\na local attacker could trigger a deadlock (Denial of Service) by\nforcing a core dump when the traced thread was in the TASK_TRACED\nstate. (CAN-2005-3107)\n\nA vulnerability has been found in the \"ioremap\" module. By performing\ncertain IO mapping operations, a local attacker could either read\nmemory pages he has not normally access to (information leak) or cause\na kernel crash (Denial of Service). This only affects the amd64\nplatform. (CAN-2005-3108)\n\nThe HFS and HFS+ file system drivers did not properly verify that the\nfile system that was attempted to be mounted really was HFS/HFS+. On\nmachines which allow users to mount arbitrary removable devices as HFS\nor HFS+ with an /etc/fstab entry, this could be exploited to trigger a\nkernel crash. (CAN-2005-3109)\n\nSteve Herrel discovered a race condition in the \"ebtables\" netfilter\nmodule. A remote attacker could exploit this by sending specially\ncrafted packets that caused a value to be modified after it had\nbeen read but before it had been locked. This eventually lead to a\nkernel crash. This only affects multiprocessor machines (SMP).\n(CAN-2005-3110)\n\nRobert Derr discovered a memory leak in the system call auditing code.\nOn a kernel which has the CONFIG_AUDITSYSCALL option enabled, this\nleads to memory exhaustion and eventually a Denial of Service. A local\nattacker could also speed this up by excessively calling system calls.\nThis only affects customized kernels built from the kernel source\npackages. The standard Ubuntu kernel does not have the\nCONFIG_AUDITSYSCALL option enabled, and is therefore not affected by\nthis.\n(http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=829841146878e082613a49581ae252c071057c23)","is_hidden":false,"release_packages":{"hoary":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-debian-2.6.8.1","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}],"warty":[{"name":"linux-patch-ubuntu-2.6.10","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power4-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-xeon","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-power4","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-mckinley","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-itanium","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-power3","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-patch-debian-2.6.8.1","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-powerpc","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-k7","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-k7-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-amd64-generic","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686-smp","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-386","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.10-5-686","version":"","is_source":false,"source_link":"","version_link":""},{"name":"linux-image-2.6.8.1-5-amd64-k8","version":"","is_source":false,"source_link":"","version_link":""}]},"type":"USN","cves_ids":["CVE-2005-3053","CVE-2005-3106","CVE-2005-3107","CVE-2005-3108","CVE-2005-3109","CVE-2005-3110"]}]}],"offset":78200,"limit":20,"total_results":79316}