CVE-2007-0227

Publication date 13 January 2007

Last updated 17 July 2025


Ubuntu priority

slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
slocate 7.04 feisty
Fixed 3.1-1ubuntu1
6.10 edgy
Fixed 3.1-1ubuntu0.1
6.06 LTS dapper
Fixed 3.0.beta.r3-1ubuntu0.1

References

Related Ubuntu Security Notices (USN)

    • USN-425-1
    • slocate vulnerability
    • 22 February 2007

Other references