Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.52330
Kategorie:FreeBSD Local Security Checks
Titel:FreeBSD Ports: mpg123, mpg123-nas, mpg123-esound
Zusammenfassung:The remote host is missing an update to the system; as announced in the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update to the system
as announced in the referenced advisory.

Vulnerability Insight:
The following packages are affected:

mpg123, mpg123-nas, mpg123-esound

CVE-2004-0982
Buffer overflow in the getauthfromURL function in httpget.c in mpg123
pre0.59s and mpg123 0.59r could allow remote attackers or local users
to execute arbitrary code via an mp3 file that contains a long string
before the @ (at sign) in a URL.

Solution:
Update your system with the appropriate patches or
software upgrades.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2004-0982
BugTraq ID: 11468
http://www.securityfocus.com/bid/11468
Bugtraq: 20041019 mpg123 "getauthfromurl" buffer overflow (Google Search)
http://marc.info/?l=bugtraq&m=109834486312407&w=2
Debian Security Information: DSA-578 (Google Search)
http://www.debian.org/security/2004/dsa-578
http://www.gentoo.org/security/en/glsa/glsa-200410-27.xml
http://www.barrossecurity.com/advisories/mpg123_getauthfromurl_bof_advisory.txt
http://www.osvdb.org/11023
http://securitytracker.com/id?1011832
http://secunia.com/advisories/12908
XForce ISS Database: mpg123-getauthfromurl-bo(17574)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17574
CopyrightCopyright (C) 2008 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.