Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.66924
Categoría:Mandrake Local Security Checks
Título:Mandriva Security Advisory MDVSA-2010:039 (netpbm)
Resumen:NOSUMMARY
Descripción:Description:
The remote host is missing an update to netpbm
announced via advisory MDVSA-2010:039.

A vulnerability have been discovered and corrected in netpbm:

Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm
before 10.47.07 allows context-dependent attackers to cause a denial
of service (application crash) or possibly execute arbitrary code
via an XPM image file that contains a crafted header field associated
with a large color index value (CVE-2009-4274).

Packages for 2008.0 are provided for Corporate Desktop 2008.0
customers.

The updated packages have been patched to correct this issue.

Affected: 2008.0, 2009.0, 2009.1, 2010.0, Corporate 4.0,
Enterprise Server 5.0


Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

https://secure1.securityspace.com/smysecure/catid.html?in=MDVSA-2010:039

Risk factor : High

CVSS Score:
7.5

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2009-4274
38164
http://www.securityfocus.com/bid/38164
38530
http://secunia.com/advisories/38530
38915
http://secunia.com/advisories/38915
ADV-2010-0358
http://www.vupen.com/english/advisories/2010/0358
ADV-2010-0780
http://www.vupen.com/english/advisories/2010/0780
DSA-2026
http://www.debian.org/security/2010/dsa-2026
MDVSA-2010:039
http://www.mandriva.com/security/advisories?name=MDVSA-2010:039
RHSA-2011:1811
http://www.redhat.com/support/errata/RHSA-2011-1811.html
SUSE-SR:2010:006
http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html
[oss-security] 20100209 vulnerability in netpbm (CVE-2009-4274)
http://www.openwall.com/lists/oss-security/2010/02/09/11
http://netpbm.svn.sourceforge.net/viewvc/netpbm/stable/converter/ppm/xpmtoppm.c?view=patch&r1=995&r2=1076&pathrev=1076
http://netpbm.svn.sourceforge.net/viewvc/netpbm/stable/doc/HISTORY?view=markup
https://bugzilla.redhat.com/show_bug.cgi?id=546580
netpbm-xpm-bo(56207)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56207
CopyrightCopyright (c) 2010 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.