CVE-2006-4005

Publication date 7 August 2006

Last updated 17 July 2025


Ubuntu priority

Description

BomberClone 0.11.6 and earlier allows remote attackers to cause a denial of service (daemon crash) via (1) a certain malformed PKGF_ackreq packet, which triggers a crash in the rscache_add() function in pkgcache.c; and (2) an error packet, which is intended to be received by clients and force client shutdown, but also triggers server shutdown.

Status

Package Ubuntu Release Status
bomberclone 9.10 karmic
Fixed 0.11.7-1
9.04 jaunty
Fixed 0.11.7-1
8.10 intrepid
Fixed 0.11.7-1
8.04 LTS hardy
Fixed 0.11.7-1
7.10 gutsy
Fixed 0.11.7-1
7.04 feisty
Fixed 0.11.7-1
6.10 edgy
Fixed 0.11.7-1
6.06 LTS dapper Ignored end of life


Access our resources on patching vulnerabilities