PublicDate: 2006-08-07 19:04:00 UTC Candidate: CVE-2006-3123 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3123 Description: Multiple integer overflows in the (1) dodecrypt and (2) doencrypt functions in cfs_fh.c in cfsd in Matt Blaze Cryptographic File System (CFS) 1.4.1 before Debian GNU/Linux package 1.4.1-17 allow local users to cause a denial of service (daemon crash) by appending data to a file that is larger than 2 Gb. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_cfs: ignored (reached end-of-life) edgy_cfs: not-affected feisty_cfs: not-affected gutsy_cfs: released (1.4.1-18) hardy_cfs: released (1.4.1-18) intrepid_cfs: released (1.4.1-18) jaunty_cfs: released (1.4.1-18) karmic_cfs: released (1.4.1-18) devel_cfs: released (1.4.1-18) upstream_cfs: needs-triage