CVE-2006-0150

Publication date 9 January 2006

Last updated 17 July 2025


Ubuntu priority

Description

Multiple format string vulnerabilities in the auth_ldap_log_reason function in Apache auth_ldap 1.6.0 and earlier allows remote attackers to execute arbitrary code via various vectors, including the username.

Status

Package Ubuntu Release Status
libapache-auth-ldap 7.04 feisty Not in release
6.10 edgy Not in release
6.06 LTS dapper Not in release


Access our resources on patching vulnerabilities