CVE-2006-2366

Publication date 15 May 2006

Last updated 17 July 2025


Ubuntu priority

Description

ircp_io.c in libopenobex for ircp 1.2, when ircp is run with the -r option, does not prompt the user when overwriting files, which allows user-assisted remote attackers to overwrite dangerous files via an arbitrary destination file name in an OBEX File Transfer session.

Status

Package Ubuntu Release Status
libopenobex 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper Not in release


Access our resources on patching vulnerabilities