Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2006-5201

14
FAUCET Score

CVE-2006-5201 describes a cryptographic vulnerability affecting multiple Sun Solaris packages, including NSS, Java JDK/JRE, JSSE, IPSec/IKE, Secure Global Desktop, and StarOffice. When using an RSA key with exponent 3, these products incorrectly remove PKCS-1 padding before hashing, enabling remote attackers to forge PKCS #1 v1.5 signatures. This flaw prevents proper verification of X.509 and other certificates. The vulnerability has a CVSS score of 4.0, indicating a network-based attack with high complexity, potentially leading to partial integrity and availability impacts. Its EPSS score is very low, suggesting minimal exploitability in the wild. There is no evidence of active exploitation, and no public exploit code exists in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are virtually nonexistent, indicating a lack of widespread attention or exploitation.

Impacted Technologies

VendorProductVersion(s)CPE
All Versions ImpactedCPE matchmatch criteria
cpe:2.3:a:sun:nss:*:*:*:*:*:*:*:*
All Versions ImpactedCPE matchmatch criteria
cpe:2.3:a:sun:secure_global_desktop:*:*:*:*:*:*:*:*
All Versions ImpactedCPE matchmatch criteria
cpe:2.3:a:sun:staroffice:*:*:*:*:*:*:*:*
9.0CPE matchmatch criteria
cpe:2.3:o:sun:solaris:9.0:*:*:*:*:sparc:*:*
10.0CPE matchmatch criteria
cpe:2.3:o:sun:solaris:10.0:*:*:*:*:sparc:*:*

CVSS Data

CVSS version used by this source: 2.0

4.0MEDIUM

AV:N/AC:H/Au:N/C:N/I:P/A:P

Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
Access Vector
NETWORK
Access Complexity
HIGH
Authentication
NONE
Exploitability Score
4.9
Impact Score
4.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
3.16%
Probability of exploitation in next 30 days
EPSS Percentile
86.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
This CVE's current EPSS score of 0.0316 is in the 80th percentile among its peer group of 19,953 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (18)

microsoftpatch availablevia msrc
Product: nss-3.73-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: nss-devel-3.73-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: nss-libs-3.73-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: nss-debuginfo-3.73-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: nss-3.73-1.cm1.aarch64.rpm on CBL Mariner 1.0 ARMFixed in: 3.73-1
microsoftpatch availablevia msrc
Product: nss-devel-3.73-1.cm1.aarch64.rpm on CBL Mariner 1.0 ARMFixed in: 3.73-1
microsoftpatch availablevia msrc
Product: nss-libs-3.73-1.cm1.aarch64.rpm on CBL Mariner 1.0 ARMFixed in: 3.73-1
microsoftpatch availablevia msrc
Product: nss-debuginfo-3.73-1.cm1.aarch64.rpm on CBL Mariner 1.0 ARMFixed in: 3.73-1
microsoftpatch availablevia msrc
Product: 13550-12137Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: 13551-12137Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: 13552-12137Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: 13553-12137Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: 13554-12138Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: 13555-12138Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: 13556-12138Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: 13557-12138Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 x64Fixed in: 3.73-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 ARMFixed in: 3.73-1

Vendor Advisories (2)

microsoft2020-Sep/CVE-2006-5201

CVE-2006-5201

Sep 8, 2020
microsoft2006-Oct/CVE-2006-5201

Multiple packages on Sun Solaris including (1) NSS; (2) Java JDK and JRE 5.0 Update 8 and earlier SDK and JRE 1.4.x up to 1.4.2_12 and SDK and JRE 1.3.x up to 1.3.1_19; (3) JSSE 1.0.3_03 and earlier; (4) IPSec/IKE; (5) Secure Global Desktop; and (6) StarOffice when using an RSA key with exponent 3 removes PKCS-1 padding before generating a hash which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents these products from correctly verifying X.509 and other certificates that use PKCS #1.

Oct 2, 2006

References

secunia.com / advisories/22204
PatchThird Party Advisory
secunia.com / advisories/22226
Third Party Advisory
secunia.com / advisories/22325
Third Party Advisory
secunia.com / advisories/22992
Third Party Advisory
sunsolve.sun.com / search/document.do
Broken Link
sunsolve.sun.com / search/document.do
Broken Link
support.avaya.com / elmodocs2/security/ASA-2006-250.htm
Third Party Advisory
kb.cert.org / vuls/id/845620
Third Party AdvisoryUS Government Resource
vupen.com / english/advisories/2006/3898
Permissions Required
vupen.com / english/advisories/2006/3899
Permissions Required
vupen.com / english/advisories/2006/3960
Permissions Required