SUSE Security Advisories · December 2006 — SUSE Security Advisories
7 advisories 7 CVEs 1 EXPLOITED

SUSE-SU-* / openSUSE-SU-* / Rancher errata for 2006-12. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

OPENSUSE-SU-2024:10670-1

openSUSEExploitedVulnCheck KEV listedCRITICAL2006-12-28

cacti-1.2.18-1.2 on GA media

CVEs:CVE-2006-6799

Affected products

ProductStatusVendorPackageEcosystem
cacti-1.2.18-1.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
cacti-1.2.18-1.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
cacti-1.2.18-1.2.s390x as component of openSUSE Tumbleweed affected SUSE
cacti-1.2.18-1.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:11510-1

openSUSEWeaponized exploitHIGH2006-12-23

wget-1.21.1-2.2 on GA media

CVEs:CVE-2006-6719

Affected products

ProductStatusVendorPackageEcosystem
wget-1.21.1-2.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
wget-1.21.1-2.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
wget-1.21.1-2.2.s390x as component of openSUSE Tumbleweed affected SUSE
wget-1.21.1-2.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
wget-lang-1.21.1-2.2.aarch64 as component of openSUSE Tumbleweed affected SUSE
wget-lang-1.21.1-2.2.ppc64le as component of openSUSE Tumbleweed affected SUSE
wget-lang-1.21.1-2.2.s390x as component of openSUSE Tumbleweed affected SUSE
wget-lang-1.21.1-2.2.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10685-1

openSUSEWeaponized exploitHIGH2006-12-10

clamav-0.103.3-1.4 on GA media

CVEs:CVE-2006-5874

Affected products

ProductStatusVendorPackageEcosystem
clamav-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
clamav-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
clamav-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
clamav-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
clamav-devel-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
clamav-devel-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
clamav-devel-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
clamav-devel-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
clamav-milter-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
clamav-milter-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
clamav-milter-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
clamav-milter-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
libclamav9-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
libclamav9-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
libclamav9-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
libclamav9-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
libfreshclam2-0.103.3-1.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
libfreshclam2-0.103.3-1.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
libfreshclam2-0.103.3-1.4.s390x as component of openSUSE Tumbleweed affected SUSE
libfreshclam2-0.103.3-1.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:11124-1

openSUSEPoC exploitCRITICAL2006-12-18

openssh-8.4p1-7.4 on GA media

CVEs:CVE-2006-0225

Affected products

ProductStatusVendorPackageEcosystem
openssh-8.4p1-7.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
openssh-8.4p1-7.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
openssh-8.4p1-7.4.s390x as component of openSUSE Tumbleweed affected SUSE
openssh-8.4p1-7.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
openssh-cavs-8.4p1-7.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
openssh-cavs-8.4p1-7.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
openssh-cavs-8.4p1-7.4.s390x as component of openSUSE Tumbleweed affected SUSE
openssh-cavs-8.4p1-7.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
openssh-clients-8.4p1-7.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
openssh-clients-8.4p1-7.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
openssh-clients-8.4p1-7.4.s390x as component of openSUSE Tumbleweed affected SUSE
openssh-clients-8.4p1-7.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
openssh-common-8.4p1-7.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
openssh-common-8.4p1-7.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
openssh-common-8.4p1-7.4.s390x as component of openSUSE Tumbleweed affected SUSE
openssh-common-8.4p1-7.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
openssh-fips-8.4p1-7.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
openssh-fips-8.4p1-7.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
openssh-fips-8.4p1-7.4.s390x as component of openSUSE Tumbleweed affected SUSE
openssh-fips-8.4p1-7.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
openssh-helpers-8.4p1-7.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
openssh-helpers-8.4p1-7.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
openssh-helpers-8.4p1-7.4.s390x as component of openSUSE Tumbleweed affected SUSE
openssh-helpers-8.4p1-7.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
openssh-server-8.4p1-7.4.aarch64 as component of openSUSE Tumbleweed affected SUSE
openssh-server-8.4p1-7.4.ppc64le as component of openSUSE Tumbleweed affected SUSE
openssh-server-8.4p1-7.4.s390x as component of openSUSE Tumbleweed affected SUSE
openssh-server-8.4p1-7.4.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10753-1

openSUSECoalition ESS < 30%HIGH2006-12-31

fetchmail-6.4.21-2.1 on GA media

CVEs:CVE-2006-5974

Affected products

ProductStatusVendorPackageEcosystem
fetchmail-6.4.21-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
fetchmail-6.4.21-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
fetchmail-6.4.21-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
fetchmail-6.4.21-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
fetchmailconf-6.4.21-2.1.aarch64 as component of openSUSE Tumbleweed affected SUSE
fetchmailconf-6.4.21-2.1.ppc64le as component of openSUSE Tumbleweed affected SUSE
fetchmailconf-6.4.21-2.1.s390x as component of openSUSE Tumbleweed affected SUSE
fetchmailconf-6.4.21-2.1.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:11504-1

openSUSEEPSS <= 49%CRITICAL2006-12-27

w3m-0.5.3+git20180125-1.14 on GA media

CVEs:CVE-2006-6772

Affected products

ProductStatusVendorPackageEcosystem
w3m-0.5.3+git20180125-1.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
w3m-0.5.3+git20180125-1.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
w3m-0.5.3+git20180125-1.14.s390x as component of openSUSE Tumbleweed affected SUSE
w3m-0.5.3+git20180125-1.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
w3m-inline-image-0.5.3+git20180125-1.14.aarch64 as component of openSUSE Tumbleweed affected SUSE
w3m-inline-image-0.5.3+git20180125-1.14.ppc64le as component of openSUSE Tumbleweed affected SUSE
w3m-inline-image-0.5.3+git20180125-1.14.s390x as component of openSUSE Tumbleweed affected SUSE
w3m-inline-image-0.5.3+git20180125-1.14.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

OPENSUSE-SU-2024:10711-1

openSUSEEPSS <= 49%HIGH2006-12-14

dbus-1-1.12.20-5.5 on GA media

CVEs:CVE-2006-6107

Affected products

ProductStatusVendorPackageEcosystem
dbus-1-1.12.20-5.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
dbus-1-1.12.20-5.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
dbus-1-1.12.20-5.5.s390x as component of openSUSE Tumbleweed affected SUSE
dbus-1-1.12.20-5.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
dbus-1-devel-1.12.20-5.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
dbus-1-devel-1.12.20-5.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
dbus-1-devel-1.12.20-5.5.s390x as component of openSUSE Tumbleweed affected SUSE
dbus-1-devel-1.12.20-5.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
dbus-1-devel-32bit-1.12.20-5.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
dbus-1-devel-32bit-1.12.20-5.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
dbus-1-devel-32bit-1.12.20-5.5.s390x as component of openSUSE Tumbleweed affected SUSE
dbus-1-devel-32bit-1.12.20-5.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
libdbus-1-3-1.12.20-5.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
libdbus-1-3-1.12.20-5.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
libdbus-1-3-1.12.20-5.5.s390x as component of openSUSE Tumbleweed affected SUSE
libdbus-1-3-1.12.20-5.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
libdbus-1-3-32bit-1.12.20-5.5.aarch64 as component of openSUSE Tumbleweed affected SUSE
libdbus-1-3-32bit-1.12.20-5.5.ppc64le as component of openSUSE Tumbleweed affected SUSE
libdbus-1-3-32bit-1.12.20-5.5.s390x as component of openSUSE Tumbleweed affected SUSE
libdbus-1-3-32bit-1.12.20-5.5.x86_64 as component of openSUSE Tumbleweed affected SUSE
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.