CVE-2007-4400
Publication date 18 August 2007
Last updated 24 July 2024
Ubuntu priority
CRLF injection vulnerability in the included media script in Konversation allows user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in the name of the song in a .mp3 file.
Status
Package | Ubuntu Release | Status |
---|---|---|
konversation | 9.04 jaunty |
Fixed 1.0.1-4ubuntu1
|
8.10 intrepid |
Fixed 1.0.1-4ubuntu1
|
|
8.04 LTS hardy |
Fixed 1.0.1-4ubuntu1
|
|
7.10 gutsy |
Fixed 1.0.1-4ubuntu1
|
|
7.04 feisty | Ignored end of life, was needed | |
6.10 edgy | Ignored end of life, was needed | |
6.06 LTS dapper | Ignored end of life |
Notes
Patch details
Package | Patch details |
---|---|
konversation |