Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.52451
Kategorie:FreeBSD Local Security Checks
Titel:FreeBSD Ports: neon
Zusammenfassung:The remote host is missing an update to the system; as announced in the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update to the system
as announced in the referenced advisory.

Vulnerability Insight:
The following packages are affected:

neon
tla
sitecopy

CVE-2004-0179
Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier,
and other products that use neon including (2) Cadaver, (3) Subversion,
or (4) OpenOffice, allow remote malicious WebDAV servers to execute
arbitrary code.

Solution:
Update your system with the appropriate patches or
software upgrades.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2004-0179
BugTraq ID: 10136
http://www.securityfocus.com/bid/10136
Bugtraq: 20040416 [OpenPKG-SA-2004.016] OpenPKG Security Advisory (neon) (Google Search)
http://marc.info/?l=bugtraq&m=108213873203477&w=2
Bugtraq: 20040416 void.at - neon format string bugs (Google Search)
http://marc.info/?l=bugtraq&m=108214147022626&w=2
Debian Security Information: DSA-487 (Google Search)
http://www.debian.org/security/2004/dsa-487
https://bugzilla.fedora.us/show_bug.cgi?id=1552
http://security.gentoo.org/glsa/glsa-200405-01.xml
http://security.gentoo.org/glsa/glsa-200405-04.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2004:032
http://www.osvdb.org/5365
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1065
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10913
http://www.redhat.com/support/errata/RHSA-2004-157.html
http://www.redhat.com/support/errata/RHSA-2004-158.html
http://www.redhat.com/support/errata/RHSA-2004-159.html
http://www.redhat.com/support/errata/RHSA-2004-160.html
http://secunia.com/advisories/11363
SGI Security Advisory: 20040404-01-U
ftp://patches.sgi.com/support/free/security/advisories/20040404-01-U.asc
SuSE Security Announcement: SuSE-SA:2004:008 (Google Search)
http://lists.suse.com/archive/suse-security-announce/2004-Apr/0003.html
SuSE Security Announcement: SuSE-SA:2004:009 (Google Search)
http://lists.suse.com/archive/suse-security-announce/2004-Apr/0002.html
CopyrightCopyright (C) 2008 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.