Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.51543
Categoría:Conectiva Local Security Checks
Título:Conectiva Security Advisory CLA-2002:539
Resumen:NOSUMMARY
Descripción:Description:

The remote host is missing updates announced in
advisory CLA-2002:539.

ypserv[1] is an implementation of the Network Information System
(NIS) which is used to centralize user information as well as
authentication.

Thorsten Kukuk identified and fixed a memory leak vulnerability[2] in
the ypserv daemon. Requests for non-existing maps would cause the
ypserv daemon to consume more and more memory. An attacker in the
local network could flood the service with such requests until the
memory is exhausted, characterizing a DoS condition.


Solution:
The apt tool can be used to perform RPM package upgrades
by running 'apt-get update' followed by 'apt-get upgrade'

https://secure1.securityspace.com/smysecure/catid.html?in=CLA-2002:539
http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=002002

Risk factor : Medium

CVSS Score:
5.0

Referencia Cruzada: BugTraq ID: 6016
Common Vulnerability Exposure (CVE) ID: CVE-2002-1232
http://www.securityfocus.com/bid/6016
Bugtraq: 20021028 GLSA: ypserv (Google Search)
http://marc.info/?l=bugtraq&m=103582692228894&w=2
Caldera Security Advisory: CSSA-2002-054.0
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-054.0.txt
Conectiva Linux advisory: CLA-2002:539
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000539
Debian Security Information: DSA-180 (Google Search)
http://www.debian.org/security/2002/dsa-180
HPdes Security Advisory: HPSBTL0210-074
http://online.securityfocus.com/advisories/4605
http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-078.php
http://www.redhat.com/support/errata/RHSA-2002-223.html
http://www.redhat.com/support/errata/RHSA-2002-224.html
http://www.redhat.com/support/errata/RHSA-2003-229.html
http://www.iss.net/security_center/static/10423.php
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.