CVE-2006-1046
published 2006-03-07CVE-2006-1046: server.cpp in Monopd 0.9.3 allows remote attackers to cause a denial of service (CPU and memory consumption) via a string containing a large number of…
PriorityP420medium5CVSS 2.0
AVNACLAuNCNINAP
EXPLOIT
EPSS
4.55%
90.4th percentile
server.cpp in Monopd 0.9.3 allows remote attackers to cause a denial of service (CPU and memory consumption) via a string containing a large number of characters that are escaped when Monopd produces XML output.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | monopd | < monopd 0.9.3-2 (bookworm) | monopd 0.9.3-2 (bookworm) |
| monopd | monopd | — | — |
| monopd | monopd | >= 0 < 0.9.3-2 | 0.9.3-2 |
| monopd | monopd | >= 0 < 0.9.3-2 | 0.9.3-2 |
| monopd | monopd | >= 0 < 0.9.3-2 | 0.9.3-2 |
| monopd | monopd | >= 0 < 0.9.3-2 | 0.9.3-2 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0LOW
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xm86-62fx-w5xf: server
ghsa_unreviewed·2022-05-01
CVE-2006-1046 [MEDIUM] GHSA-xm86-62fx-w5xf: server
server.cpp in Monopd 0.9.3 allows remote attackers to cause a denial of service (CPU and memory consumption) via a string containing a large number of characters that are escaped when Monopd produces XML output.
OSV
CVE-2006-1046: server
osv·2006-03-07·CVSS 5.0
CVE-2006-1046 [MEDIUM] CVE-2006-1046: server
server.cpp in Monopd 0.9.3 allows remote attackers to cause a denial of service (CPU and memory consumption) via a string containing a large number of characters that are escaped when Monopd produces XML output.
Debian
CVE-2006-1046: monopd - server.cpp in Monopd 0.9.3 allows remote attackers to cause a denial of service ...
vendor_debian·2006·CVSS 5.0
CVE-2006-1046 [MEDIUM] CVE-2006-1046: monopd - server.cpp in Monopd 0.9.3 allows remote attackers to cause a denial of service ...
server.cpp in Monopd 0.9.3 allows remote attackers to cause a denial of service (CPU and memory consumption) via a string containing a large number of characters that are escaped when Monopd produces XML output.
Scope: local
bookworm: resolved (fixed in 0.9.3-2)
bullseye: resolved (fixed in 0.9.3-2)
forky: resolved (fixed in 0.9.3-2)
sid: resolved (fixed in 0.9.3-2)
trixie: resolved (fixed in 0.9.3-2)
No detection rules found.
No writeups or analysis indexed.
http://aluigi.altervista.org/adv/monopdx-adv.txthttp://secunia.com/advisories/19133http://www.robertjohnkaper.com/downloads/atlantik/monopd-0.9.3-dosfix.diffhttp://www.securityfocus.com/bid/16981http://www.vupen.com/english/advisories/2006/0844https://exchange.xforce.ibmcloud.com/vulnerabilities/25161http://aluigi.altervista.org/adv/monopdx-adv.txthttp://secunia.com/advisories/19133http://www.robertjohnkaper.com/downloads/atlantik/monopd-0.9.3-dosfix.diffhttp://www.securityfocus.com/bid/16981http://www.vupen.com/english/advisories/2006/0844https://exchange.xforce.ibmcloud.com/vulnerabilities/25161
2006-03-07
Published