Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-2230

Опубликовано: 05 мая 2006
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.4 might allow attackers to cause a denial of service via format string specifiers in an MP3 filename specified on the command line. NOTE: this is a different vulnerability than CVE-2006-1905. In addition, if the only attack vectors involve a user-assisted, local command line argument of a non-setuid program, this issue might not be a vulnerability.

РелизСтатусПримечание
dapper

ignored

end of life
devel

released

0.99.4-2
edgy

ignored

end of life, was needed
feisty

released

0.99.4-2
gutsy

released

0.99.4-2
hardy

released

0.99.4-2
intrepid

released

0.99.4-2
jaunty

released

0.99.4-2
karmic

released

0.99.4-2
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 78%
0.012
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
больше 19 лет назад

Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.4 might allow attackers to cause a denial of service via format string specifiers in an MP3 filename specified on the command line. NOTE: this is a different vulnerability than CVE-2006-1905. In addition, if the only attack vectors involve a user-assisted, local command line argument of a non-setuid program, this issue might not be a vulnerability.

debian
больше 19 лет назад

Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0 ...

github
больше 3 лет назад

Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.4 might allow attackers to cause a denial of service via format string specifiers in an MP3 filename specified on the command line. NOTE: this is a different vulnerability than CVE-2006-1905. In addition, if the only attack vectors involve a user-assisted, local command line argument of a non-setuid program, this issue might not be a vulnerability.

fstec
больше 19 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 78%
0.012
Низкий

5 Medium

CVSS2