CVE-2006-3126
Publication date 6 September 2006
Last updated 24 July 2024
Ubuntu priority
c2faxrecv in capi4hylafax 01.02.03 allows remote attackers to execute arbitrary commands via null (\0) and shell metacharacters in the TSI string, as demonstrated by a fax from an anonymous number.
Status
Package | Ubuntu Release | Status |
---|---|---|
capi4hylafax | 9.10 karmic |
Fixed 01.03.00.99.svn.300-3
|
9.04 jaunty |
Fixed 01.03.00.99.svn.300-3
|
|
8.10 intrepid |
Fixed 01.03.00.99.svn.300-3
|
|
8.04 LTS hardy |
Fixed 01.03.00.99.svn.300-3
|
|
7.10 gutsy |
Fixed 01.03.00.99.svn.300-3
|
|
7.04 feisty |
Fixed 01.03.00.99.svn.300-3
|
|
6.10 edgy |
Fixed 01.03.00.99.svn.300-3
|
|
6.06 LTS dapper | Ignored end of life |