← Vulnerability feed

Vulnerability record · CVE-2006-0736 · published 27 February 2006

CVE-2006-0736: Novell linux desktop vulnerability

Novell · Linux Desktop

Stack-based buffer overflow in the pam_micasa PAM authentication module in CASA on Novell Linux Desktop 9 and Open Enterprise Server 1 allows remote attackers to execute arbitrary code via unspecified vectors.

10.0 CVSS 2.0 High EPSS 7.1% · top 6.0%
10.0CVSS 2.0 base score
7.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
8References
16 Jun 2026Last modified by NVD

Description

Stack-based buffer overflow in the pam_micasa PAM authentication module in CASA on Novell Linux Desktop 9 and Open Enterprise Server 1 allows remote attackers to execute arbitrary code via unspecified vectors.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2006-0736 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2014-7169GNU Bash environment variable function parsing command injection (Shellshock variant)GNU Bash through 4.3 bash43-025 processes trailing strings after malformed function definitions in environment variable values, allowing command inje…KEVEPSS 100%analysed9.8CVE-2014-6271GNU Bash environment variable command injection (ShellShock)GNU Bash through 4.3 processes trailing strings after function definitions in environment variable values, allowing injected commands to run when Bas…KEVEPSS 100%analysed10.0CVE-2014-0609Novell open enterprise server vulnerabilityUnspecified vulnerability in Novell Open Enterprise Server (OES) 11 SP1 before Scheduled Maintenance Update 9415 and 11 SP2 before Scheduled Maintena…EPSS 2.2%10.0CVE-2014-0598Novell open enterprise server path traversal vulnerabilityDirectory traversal vulnerability in iPrint in Novell Open Enterprise Server (OES) 11 SP1 before Maintenance Update 9151 on Linux has unspecified imp…EPSS 2.5%9.3CVE-2008-5021Mozilla firefox race condition vulnerabilitynsFrameManager in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remo…EPSS 3.6%7.8CVE-2013-2016Qemu improper privilege management vulnerabilityA flaw was found in the way qemu v1.3.0 and later (virtio-rng) validates addresses when guest accesses the config space of a virtio device. If the vi…EPSS 0.51%7.8CVE-2009-0115Christophe.varoqui multipath-tools incorrect permission assignment vulnerabilityThe Device Mapper multipathing driver (aka multipath-tools or device-mapper-multipath) 0.4.8, as used in SUSE openSUSE, SUSE Linux Enterprise Server …EPSS 0.49%7.8CVE-2008-2812Linux kernel null pointer dereference vulnerabilityThe Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial of service (system crash) or p…EPSS 0.43%

Source: NIST National Vulnerability Database (record CVE-2006-0736), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.