CVE-2006-1520
Publication date 22 May 2006
Last updated 17 July 2025
Ubuntu priority
Description
Format string vulnerability in ANSI C Sender Policy Framework library (libspf) before 1.0.0-p5, when debugging is enabled, allows remote attackers to execute arbitrary code via format string specifiers, possibly in an e-mail address.