Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.52227
Kategorie:FreeBSD Local Security Checks
Titel:FreeBSD Ports: zgv
Zusammenfassung:The remote host is missing an update to the system; as announced in the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update to the system
as announced in the referenced advisory.

Vulnerability Insight:
The following packages are affected:

zgv, xzgv

CVE-2004-0994
Multiple integer overflows in xzgv 0.8 and earlier allow remote
attackers to execute arbitrary code via images with large width and
height values, which trigger a heap-based buffer overflow, as
demonstrated in the read_prf_file function in readprf.c. NOTE:
CVE-2004-0994 and CVE-2004-1095 identify sets of bugs that only
partially overlap, despite having the same developer. Therefore, they
should be regarded as distinct.

Solution:
Update your system with the appropriate patches or
software upgrades.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2004-0994
Debian Security Information: DSA-614 (Google Search)
http://www.debian.org/security/2004/dsa-614
http://marc.info/?l=bugtraq&m=110297198402077&w=2
XForce ISS Database: xzgv-readprffile-bo(18454)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18454
CopyrightCopyright (C) 2008 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.