Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.122757
Kategorie:Oracle Linux Local Security Checks
Titel:Oracle: Security Advisory (ELSA-2015-2345)
Zusammenfassung:The remote host is missing an update for the 'net-snmp' package(s) announced via the ELSA-2015-2345 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'net-snmp' package(s) announced via the ELSA-2015-2345 advisory.

Vulnerability Insight:
[1:5.7.2-24]
- Fixed lmSensorsTable not reporting sensors with duplicate names
(#1252053)
- Fixed close() overhead of extend commands (#1252048)
- Fixed out-of-bounds write in python code (#1252034)

[1:5.7.2-23]
- Fixed parsing of invalid variables in incoming packets (#1248414)
- Fixed HOST-RESOURCES-MIB::hrFSAccess flag when read-only filesystem
becomes writable (#1241897)

[1:5.7.2-22]
- Fixed IP-MIB::ipSystemStatsInOctets and similar counters for IPv4
(#1235697)

[1:5.7.2-21]
- Fixed crash on reloading 'exec' configuration options (#1228893)
- Fixed CVE-2014-3565, snmptrapd died when parsing certain traps (#1209361)
- Fixed storageUseNFS functionality in hrStorageTable (#1193006)
- Fixed forwarding of traps with RequestID=0 in snmptrapd (#1192511)
- Fixed hrStorageTable to contain 31 bits integers (#1192221)
- Fixed 'clientaddr' option for UDPv6 client messages (#1190679)
- Fixed log level of SMUX messages (#1189393)
- Fixed UDP-MIB::udpTable index on big-endian platforms (#1184433)
- Fixed client utilities reporting 'read_config_store open failure on
/var/lib/net-snmp/snmpapp.conf' (#1151310)
- Fixed snmpd crash when failed to parse SMUX message headers (#1140236)
- Added 'diskio' option to snmpd.conf, it's possible to monitor only
selected devices in diskIOTable (#1092308)

Affected Software/OS:
'net-snmp' package(s) on Oracle Linux 7.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2014-3565
69477
http://www.securityfocus.com/bid/69477
APPLE-SA-2015-10-21-4
http://lists.apple.com/archives/security-announce/2015/Oct/msg00005.html
GLSA-201507-17
https://security.gentoo.org/glsa/201507-17
RHSA-2015:1385
http://rhn.redhat.com/errata/RHSA-2015-1385.html
USN-2711-1
http://www.ubuntu.com/usn/USN-2711-1
http://sourceforge.net/p/net-snmp/code/ci/7f4a7b891332899cea26e95be0337aae01648742/
http://sourceforge.net/p/net-snmp/official-patches/48/
http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html
https://bugzilla.redhat.com/show_bug.cgi?id=1125155
https://support.apple.com/HT205375
openSUSE-SU-2014:1108
http://lists.opensuse.org/opensuse-updates/2014-09/msg00013.html
CopyrightCopyright (C) 2015 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.