PublicDate: 2006-03-21 01:06:00 UTC Candidate: CVE-2006-1061 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1061 Description: Heap-based buffer overflow in cURL and libcURL 7.15.0 through 7.15.2 allows remote attackers to execute arbitrary commands via a TFTP URL (tftp://) with a valid hostname and a long path. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_curl: released (7.15.1-1ubuntu2.1) edgy_curl: released (7.15.4-1ubuntu2.2) feisty_curl: released (7.15.5-1ubuntu2.1) devel_curl: released (7.16.4-2ubuntu1) upstream_curl: needs-triage