CVE-2006-5201 : Detail

CVE-2006-5201

0.78%V3
Network
2006-10-09
16h00 +00:00
2006-10-18
07h00 +00:00
Notifications for a CVE
Stay informed of any changes for a specific CVE.
Notifications manage

CVE Descriptions

Multiple packages on Sun Solaris, including (1) NSS; (2) Java JDK and JRE 5.0 Update 8 and earlier, SDK and JRE 1.4.x up to 1.4.2_12, and SDK and JRE 1.3.x up to 1.3.1_19; (3) JSSE 1.0.3_03 and earlier; (4) IPSec/IKE; (5) Secure Global Desktop; and (6) StarOffice, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents these products from correctly verifying X.509 and other certificates that use PKCS #1.

CVE Informations

Metrics

Metrics Score Severity CVSS Vector Source
V2 4 AV:N/AC:H/Au:N/C:N/I:P/A:P [email protected]

EPSS

EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.

EPSS Score

The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.

EPSS Percentile

The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.

Products Mentioned

Configuraton 0

Sun>>Nss >> Version *

Sun>>Secure_global_desktop >> Version *

Sun>>Staroffice >> Version *

Configuraton 0

Sun>>Solaris >> Version 9.0

Sun>>Solaris >> Version 10.0

Sun>>Sunos >> Version 5.8

Configuraton 0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Sun>>Jdk >> Version 1.5.0

Configuraton 0

Sun>>Jre >> Version 1.3.1

Sun>>Jre >> Version 1.3.1_2

Sun>>Jre >> Version 1.3.1_03

Sun>>Jre >> Version 1.3.1_04

Sun>>Jre >> Version 1.3.1_05

Sun>>Jre >> Version 1.3.1_06

Sun>>Jre >> Version 1.3.1_07

Sun>>Jre >> Version 1.3.1_08

Sun>>Jre >> Version 1.3.1_09

Sun>>Jre >> Version 1.3.1_10

Sun>>Jre >> Version 1.3.1_11

Sun>>Jre >> Version 1.3.1_12

Sun>>Jre >> Version 1.3.1_13

Sun>>Jre >> Version 1.3.1_14

Sun>>Jre >> Version 1.3.1_15

Sun>>Jre >> Version 1.3.1_16

Sun>>Jre >> Version 1.3.1_17

Sun>>Jre >> Version 1.3.1_18

Sun>>Jre >> Version 1.3.1_19

Sun>>Jre >> Version 1.4.2

Sun>>Jre >> Version 1.4.2_1

Sun>>Jre >> Version 1.4.2_2

Sun>>Jre >> Version 1.4.2_3

Sun>>Jre >> Version 1.4.2_4

Sun>>Jre >> Version 1.4.2_5

Sun>>Jre >> Version 1.4.2_6

Sun>>Jre >> Version 1.4.2_7

Sun>>Jre >> Version 1.4.2_8

Sun>>Jre >> Version 1.4.2_9

Sun>>Jre >> Version 1.4.2_10

Sun>>Jre >> Version 1.4.2_11

Sun>>Jre >> Version 1.4.2_12

Sun>>Jre >> Version 1.5.0

Sun>>Jre >> Version 1.5.0

Sun>>Jre >> Version 1.5.0

Sun>>Jre >> Version 1.5.0

Sun>>Jre >> Version 1.5.0

Sun>>Jre >> Version 1.5.0

Sun>>Jre >> Version 1.5.0

Sun>>Jre >> Version 1.5.0

Sun>>Jre >> Version 1.5.0

Configuraton 0

Sun>>Sdk >> Version 1.3.1

Sun>>Sdk >> Version 1.3.1_01

Sun>>Sdk >> Version 1.3.1_01a

Sun>>Sdk >> Version 1.3.1_02

Sun>>Sdk >> Version 1.3.1_03

Sun>>Sdk >> Version 1.3.1_04

Sun>>Sdk >> Version 1.3.1_05

Sun>>Sdk >> Version 1.3.1_06

Sun>>Sdk >> Version 1.3.1_07

Sun>>Sdk >> Version 1.3.1_08

Sun>>Sdk >> Version 1.3.1_09

Sun>>Sdk >> Version 1.3.1_10

Sun>>Sdk >> Version 1.3.1_11

Sun>>Sdk >> Version 1.3.1_12

Sun>>Sdk >> Version 1.3.1_13

Sun>>Sdk >> Version 1.3.1_14

Sun>>Sdk >> Version 1.3.1_15

Sun>>Sdk >> Version 1.3.1_16

Sun>>Sdk >> Version 1.3.1_17

Sun>>Sdk >> Version 1.3.1_18

Sun>>Sdk >> Version 1.3.1_19

Sun>>Sdk >> Version 1.4.2

Sun>>Sdk >> Version 1.4.2_1

Sun>>Sdk >> Version 1.4.2_2

Sun>>Sdk >> Version 1.4.2_3

Sun>>Sdk >> Version 1.4.2_4

Sun>>Sdk >> Version 1.4.2_5

Sun>>Sdk >> Version 1.4.2_6

Sun>>Sdk >> Version 1.4.2_7

Sun>>Sdk >> Version 1.4.2_8

Sun>>Sdk >> Version 1.4.2_9

Sun>>Sdk >> Version 1.4.2_10

Sun>>Sdk >> Version 1.4.2_11

Sun>>Sdk >> Version 1.4.2_12

Configuraton 0

Sun>>Jsse >> Version 1.0.3

Sun>>Jsse >> Version 1.0.3_01

Sun>>Jsse >> Version 1.0.3_02

Sun>>Jsse >> Version 1.0.3_03

References

http://secunia.com/advisories/22992
Tags : third-party-advisory, x_refsource_SECUNIA
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102657-1
Tags : vendor-advisory, x_refsource_SUNALERT
http://www.vupen.com/english/advisories/2006/3899
Tags : vdb-entry, x_refsource_VUPEN
http://www.vupen.com/english/advisories/2006/3960
Tags : vdb-entry, x_refsource_VUPEN
http://www.vupen.com/english/advisories/2006/3898
Tags : vdb-entry, x_refsource_VUPEN
http://secunia.com/advisories/22325
Tags : third-party-advisory, x_refsource_SECUNIA
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102648-1
Tags : vendor-advisory, x_refsource_SUNALERT
http://secunia.com/advisories/22204
Tags : third-party-advisory, x_refsource_SECUNIA
http://secunia.com/advisories/22226
Tags : third-party-advisory, x_refsource_SECUNIA
http://www.kb.cert.org/vuls/id/845620
Tags : third-party-advisory, x_refsource_CERT-VN