Candidate: CVE-2012-4434 PublicDate: 2020-01-09 21:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-4434 http://seclists.org/oss-sec/2012/q3/509 Description: fwknop before 2.0.3 allow remote authenticated users to cause a denial of service (server crash) or possibly execute arbitrary code. Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=688151 Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H [8.8 HIGH] Patches_fwknop: upstream: http://www.cipherdyne.org/cgi-bin/gitweb.cgi?p=fwknop.git;a=commitdiff;h=d46ba1c027a11e45821ba897a4928819bccc8f22 upstream_fwknop: released (2.0.3) hardy_fwknop: DNE lucid_fwknop: ignored (reached end-of-life) natty_fwknop: ignored (reached end-of-life) oneiric_fwknop: ignored (reached end-of-life) precise_fwknop: ignored (reached end-of-life) precise/esm_fwknop: DNE (precise was needs-triage) quantal_fwknop: released (2.0.3-1) raring_fwknop: not-affected (2.0.3-2ubuntu1) saucy_fwknop: not-affected (2.0.3-2ubuntu1) trusty_fwknop: not-affected (2.0.3-2ubuntu1) trusty/esm_fwknop: DNE (trusty was not-affected [2.0.3-2ubuntu1]) utopic_fwknop: not-affected (2.0.3-2ubuntu1) vivid_fwknop: not-affected (2.0.3-2ubuntu1) vivid/stable-phone-overlay_fwknop: DNE vivid/ubuntu-core_fwknop: DNE wily_fwknop: not-affected (2.0.3-2ubuntu1) xenial_fwknop: not-affected (2.0.3-2ubuntu1) yakkety_fwknop: not-affected (2.0.3-2ubuntu1) zesty_fwknop: not-affected (2.0.3-2ubuntu1) devel_fwknop: not-affected (2.0.3-2ubuntu1)