CVE-2006-3126

Publication date 6 September 2006

Last updated 24 July 2024


Ubuntu priority

c2faxrecv in capi4hylafax 01.02.03 allows remote attackers to execute arbitrary commands via null (\0) and shell metacharacters in the TSI string, as demonstrated by a fax from an anonymous number.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
capi4hylafax 9.10 karmic
Fixed 01.03.00.99.svn.300-3
9.04 jaunty
Fixed 01.03.00.99.svn.300-3
8.10 intrepid
Fixed 01.03.00.99.svn.300-3
8.04 LTS hardy
Fixed 01.03.00.99.svn.300-3
7.10 gutsy
Fixed 01.03.00.99.svn.300-3
7.04 feisty
Fixed 01.03.00.99.svn.300-3
6.10 edgy
Fixed 01.03.00.99.svn.300-3
6.06 LTS dapper Ignored end of life