This CPE summary could be partial or incomplete. Please contact us for a detailed listing.


Vendor Ubuntu First view 2010-08-10
Product Ubuntu Linux Last view 2010-08-10
Version 10.04 Type Os
Update -  
Edition lts  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
CPE Product cpe:2.3:o:ubuntu:ubuntu_linux

Activity : Overall

Related : CVE

  Date Alert Description
9.3 2010-08-10 CVE-2010-0834

The base-files package before 5.0.0ubuntu7.1 on Ubuntu 9.10 and before 5.0.0ubuntu20.10.04.2 on Ubuntu 10.04 LTS, as shipped on Dell Latitude 2110 netbooks, does not require authentication for package installation, which allows remote archive servers and man-in-the-middle attackers to execute arbitrary code via a crafted package.

CWE : Common Weakness Enumeration

100% (1) CWE-287 Improper Authentication

Open Source Vulnerability Database (OSVDB)

id Description
66963 Ubuntu base-files on Dell Latitude 2110 Unauthenticated Package Installation

OpenVAS Exploits

id Description
2010-08-06 Name : Ubuntu Update for base-files vulnerability USN-968-1
File : nvt/gb_ubuntu_USN_968_1.nasl

Nessus® Vulnerability Scanner

id Description
2010-08-06 Name: The remote Ubuntu host is missing a security-related patch.
File: ubuntu_USN-968-1.nasl - Type: ACT_GATHER_INFO