Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.51330
Kategorie:Conectiva Local Security Checks
Titel:Conectiva Security Advisory CLA-2004:808
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing updates announced in
advisory CLA-2004:808.

CVS[1] is a version control system largely used in software
projects.

By requesting malformed modules[2] a remote attacker can attempt to
create files and directories on the server's root file system. This
is usually prevented by file system permissions, however.


Solution:
The apt tool can be used to perform RPM package upgrades
by running 'apt-get update' followed by 'apt-get upgrade'

http://www.securityspace.com/smysecure/catid.html?in=CLA-2004:808
http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=002004

Risk factor : High

CVSS Score:
7.5

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2003-0977
Bugtraq: 20031217 [OpenPKG-SA-2003.052] OpenPKG Security Advisory (cvs) (Google Search)
http://marc.info/?l=bugtraq&m=107168035515554&w=2
Bugtraq: 20040129 [FLSA-2004:1207] Updated cvs resolves security vulnerability (Google Search)
http://marc.info/?l=bugtraq&m=107540163908129&w=2
Conectiva Linux advisory: CLA-2004:808
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000808
Debian Security Information: DSA-422 (Google Search)
http://www.debian.org/security/2004/dsa-422
http://www.mandriva.com/security/advisories?name=MDKSA-2003:112
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11528
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A855
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A866
http://www.redhat.com/support/errata/RHSA-2004-003.html
http://www.redhat.com/support/errata/RHSA-2004-004.html
http://secunia.com/advisories/10601
SGI Security Advisory: 20040103-01-U
ftp://patches.sgi.com/support/free/security/advisories/20040103-01-U.asc
SGI Security Advisory: 20040202-01-U
ftp://patches.sgi.com/support/free/security/advisories/20040202-01-U.asc
XForce ISS Database: cvs-module-file-manipulation(13929)
https://exchange.xforce.ibmcloud.com/vulnerabilities/13929
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.