Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.882553
Kategorie:CentOS Local Security Checks
Titel:CentOS Update for ipa-admintools CESA-2016:1797 centos6
Zusammenfassung:Check the version of ipa-admintools
Beschreibung:Summary:
Check the version of ipa-admintools

Vulnerability Insight:
Red Hat Identity Management (IdM) is a
centralized authentication, identity management, and authorization solution for
both traditional and cloud-based enterprise environments.

Security Fix(es):

* An insufficient permission check issue was found in the way IPA server
treats certificate revocation requests. An attacker logged in with the
'retrieve certificate' permission enabled could use this flaw to revoke
certificates, possibly triggering a denial of service attack.
(CVE-2016-5404)

This issue was discovered by Fraser Tweedale (Red Hat).

Affected Software/OS:
ipa-admintools on CentOS 6

Solution:
Please Install the Updated Packages.

CVSS Score:
4.0

CVSS Vector:
AV:N/AC:L/Au:S/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2016-5404
92525
http://www.securityfocus.com/bid/92525
FEDORA-2016-7898627d08
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VQDYWANTMDFZP3HTGSEOA2IONVUITYX5/
FEDORA-2016-92a3655b70
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3PZ2ZQTMGC2UBRNHXVVOY3PJDOBP4CP4/
FEDORA-2016-f56c765d67
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/S5OROLKFSY5QRQS7NGBNDP5QMOBV3XMZ/
RHSA-2016:1797
http://rhn.redhat.com/errata/RHSA-2016-1797.html
[oss-security] 20160817 CVE-2016-5404 freeipa: Insufficient privileges check in certificate revocation
http://www.openwall.com/lists/oss-security/2016/08/17/9
http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
https://fedorahosted.org/freeipa/ticket/6232
https://git.fedorahosted.org/cgit/freeipa.git/commit/?id=cf74584d0f772f3f5eccc1d30c001e4212a104fd
CopyrightCopyright (C) 2016 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.