Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.4.2012.0311.1
Kategorie:SuSE Local Security Checks
Titel:SUSE: Security Advisory (SUSE-SU-2012:0311-1)
Zusammenfassung:The remote host is missing an update for the 'CVS' package(s) announced via the SUSE-SU-2012:0311-1 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'CVS' package(s) announced via the SUSE-SU-2012:0311-1 advisory.

Vulnerability Insight:
A heap-based buffer overflow flaw was found in the way CVS read proxy connection HTTP responses. An attacker could exploit this to cause the application to crash or,
potentially, execute arbitrary code in the context of the user running the application (CVE-2012-0804).

Security Issue reference:

* CVE-2012-0804
>

Affected Software/OS:
'CVS' package(s) on SLE SDK 10 SP4, SUSE Linux Enterprise Desktop 10 SP4, SUSE Linux Enterprise Desktop 11 SP1, SUSE Linux Enterprise Server 10 SP4, SUSE Linux Enterprise Server 11 SP1, SUSE Linux Enterprise Software Development Kit 11 SP1.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2012-0804
BugTraq ID: 51943
http://www.securityfocus.com/bid/51943
Debian Security Information: DSA-2407 (Google Search)
http://www.debian.org/security/2012/dsa-2407
https://security.gentoo.org/glsa/201701-44
http://www.mandriva.com/security/advisories?name=MDVSA-2012:044
https://bugzilla.redhat.com/show_bug.cgi?id=784141
http://www.osvdb.org/78987
RedHat Security Advisories: RHSA-2012:0321
http://rhn.redhat.com/errata/RHSA-2012-0321.html
http://www.securitytracker.com/id?1026719
http://secunia.com/advisories/47869
http://secunia.com/advisories/48063
http://secunia.com/advisories/48142
http://secunia.com/advisories/48150
SuSE Security Announcement: openSUSE-SU-2012:0310 (Google Search)
http://lists.opensuse.org/opensuse-updates/2012-02/msg00064.html
http://ubuntu.com/usn/usn-1371-1
XForce ISS Database: cvs-proxyconnect-bo(73097)
https://exchange.xforce.ibmcloud.com/vulnerabilities/73097
CopyrightCopyright (C) 2021 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.