Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.51670
Kategorie:Conectiva Local Security Checks
Titel:Conectiva Security Advisory CLA-2005:925
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing updates announced in
advisory CLA-2005:925.

Evolution[1] is the GNOME mailer, calendar, contact manager and
communications tool.

Max Vozeler discovered an integer overflow[2] in the helper
application camel-lock-helper. A local attacker can cause the helper
to execute arbitrary code only with the current user privileges
privileges via a malicious POP server becose it is not setuid root
neither setgid mail.

For Conectiva Linux 10, Evolution is also having a major upgrade to
2.0.3, as requested by users.


Solution:
The apt tool can be used to perform RPM package upgrades
by running 'apt-get update' followed by 'apt-get upgrade'

http://www.ximian.com/products/ximian_evolution
http://www.securityspace.com/smysecure/catid.html?in=CLA-2005:925
http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000925

Risk factor : High

CVSS Score:
7.2

Querverweis: BugTraq ID: 12354
Common Vulnerability Exposure (CVE) ID: CVE-2005-0102
http://www.securityfocus.com/bid/12354
Conectiva Linux advisory: CLA-2005:925
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000925
Debian Security Information: DSA-673 (Google Search)
http://www.debian.org/security/2005/dsa-673
http://security.gentoo.org/glsa/glsa-200501-35.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2005:024
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9616
http://www.redhat.com/support/errata/RHSA-2005-238.html
http://www.redhat.com/support/errata/RHSA-2005-397.html
http://securitytracker.com/id?1012981
http://secunia.com/advisories/13830
https://usn.ubuntu.com/69-1/
XForce ISS Database: evolution-camellockhelper-bo(19031)
https://exchange.xforce.ibmcloud.com/vulnerabilities/19031
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.