Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.4.2012.0311.1
Category:SuSE Local Security Checks
Title:SUSE: Security Advisory (SUSE-SU-2012:0311-1)
Summary:The remote host is missing an update for the 'CVS' package(s) announced via the SUSE-SU-2012:0311-1 advisory.
Description:Summary:
The remote host is missing an update for the 'CVS' package(s) announced via the SUSE-SU-2012:0311-1 advisory.

Vulnerability Insight:
A heap-based buffer overflow flaw was found in the way CVS read proxy connection HTTP responses. An attacker could exploit this to cause the application to crash or,
potentially, execute arbitrary code in the context of the user running the application (CVE-2012-0804).

Security Issue reference:

* CVE-2012-0804
>

Affected Software/OS:
'CVS' package(s) on SUSE Linux Enterprise Desktop 10-SP4, SUSE Linux Enterprise Desktop 11-SP1, SUSE Linux Enterprise Server 10-SP4, SUSE Linux Enterprise Server 11-SP1, SUSE Linux Enterprise Software Development Kit 11-SP1.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2012-0804
1026719
http://www.securitytracker.com/id?1026719
47869
http://secunia.com/advisories/47869
48063
http://secunia.com/advisories/48063
48142
http://secunia.com/advisories/48142
48150
http://secunia.com/advisories/48150
51943
http://www.securityfocus.com/bid/51943
78987
http://www.osvdb.org/78987
DSA-2407
http://www.debian.org/security/2012/dsa-2407
GLSA-201701-44
https://security.gentoo.org/glsa/201701-44
MDVSA-2012:044
http://www.mandriva.com/security/advisories?name=MDVSA-2012:044
RHSA-2012:0321
http://rhn.redhat.com/errata/RHSA-2012-0321.html
USN-1371-1
http://ubuntu.com/usn/usn-1371-1
cvs-proxyconnect-bo(73097)
https://exchange.xforce.ibmcloud.com/vulnerabilities/73097
https://bugzilla.redhat.com/show_bug.cgi?id=784141
openSUSE-SU-2012:0310
http://lists.opensuse.org/opensuse-updates/2012-02/msg00064.html
CopyrightCopyright (C) 2021 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.