CVE-2007-3215

Publication date 14 June 2007

Last updated 24 July 2024


Ubuntu priority

PHPMailer 1.7, when configured to use sendmail, allows remote attackers to execute arbitrary shell commands via shell metacharacters in the SendmailSend function in class.phpmailer.php.

Status

Package Ubuntu Release Status
flyspray 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy
Fixed 0.9.8-13
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life
glpi 9.10 karmic
Fixed 0.68.3.2-1
9.04 jaunty
Fixed 0.68.3.2-1
8.10 intrepid
Fixed 0.68.3.2-1
8.04 LTS hardy
Fixed 0.68.3.2-1
7.10 gutsy
Fixed 0.68.3.2-1
7.04 feisty Ignored end of life, was needed
6.10 edgy Not in release
6.06 LTS dapper Not in release
ipplan 9.10 karmic
Fixed 4.85-2
9.04 jaunty
Fixed 4.85-2
8.10 intrepid
Fixed 4.85-2
8.04 LTS hardy
Fixed 4.85-2
7.10 gutsy
Fixed 4.85-2
7.04 feisty Not in release
6.10 edgy Not in release
6.06 LTS dapper Not in release
knowledgeroot 9.10 karmic
Fixed 0.9.8.2-2
9.04 jaunty
Fixed 0.9.8.2-2
8.10 intrepid
Fixed 0.9.8.2-2
8.04 LTS hardy
Fixed 0.9.8.2-2
7.10 gutsy
Fixed 0.9.8.2-2
7.04 feisty Ignored end of life, was needed
6.10 edgy Not in release
6.06 LTS dapper Not in release
libphp-phpmailer 9.10 karmic
Fixed 1.73-4
9.04 jaunty
Fixed 1.73-4
8.10 intrepid
Fixed 1.73-4
8.04 LTS hardy
Fixed 1.73-4
7.10 gutsy
Fixed 1.73-4
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life
moodle 9.10 karmic
Not affected
9.04 jaunty
Not affected
8.10 intrepid
Fixed 1.8.2-1.2ubuntu2.1
8.04 LTS hardy
Fixed 1.8.2-1ubuntu4.2
6.06 LTS dapper Ignored end of life
owl-dms 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy
Fixed 0.94-2
7.10 gutsy
Fixed 0.94-2
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life
wordpress 9.10 karmic
Not affected
9.04 jaunty
Not affected
8.10 intrepid
Not affected
8.04 LTS hardy
Not affected
7.10 gutsy
Not affected
7.04 feisty Ignored end of life, was needed
6.10 edgy
Not affected
6.06 LTS dapper
Not affected

References

Related Ubuntu Security Notices (USN)

    • USN-791-1
    • Moodle vulnerabilities
    • 24 June 2009

Other references