Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.54824
Kategorie:Gentoo Local Security Checks
Titel:Gentoo Security Advisory GLSA 200501-38 (Perl)
Zusammenfassung:The remote host is missing updates announced in;advisory GLSA 200501-38.
Beschreibung:Summary:
The remote host is missing updates announced in
advisory GLSA 200501-38.

Vulnerability Insight:
The Perl DBI library and File::Path::rmtree function are vulnerable to
symlink attacks.

Solution:
All Perl users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose dev-lang/perl

All DBI library users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose dev-perl/DBI

CVSS Score:
2.6

CVSS Vector:
AV:L/AC:H/Au:N/C:N/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2004-0452
BugTraq ID: 12072
http://www.securityfocus.com/bid/12072
Bugtraq: 20050111 [OpenPKG-SA-2005.001] OpenPKG Security Advisory (perl) (Google Search)
http://marc.info/?l=bugtraq&m=110547693019788&w=2
Debian Security Information: DSA-620 (Google Search)
http://www.debian.org/security/2004/dsa-620
http://fedoranews.org/updates/FEDORA--.shtml
http://www.gentoo.org/security/en/glsa/glsa-200501-38.xml
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9938
http://www.redhat.com/support/errata/RHSA-2005-103.html
http://www.redhat.com/support/errata/RHSA-2005-105.html
http://secunia.com/advisories/12991
http://secunia.com/advisories/18517
http://secunia.com/advisories/55314
SGI Security Advisory: 20060101-01-U
ftp://patches.sgi.com/support/free/security/advisories/20060101-01-U
https://www.ubuntu.com/usn/usn-44-1/
XForce ISS Database: perl-filepathrmtree-insecure-permissions(18650)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18650
Common Vulnerability Exposure (CVE) ID: CVE-2005-0077
BugTraq ID: 12360
http://www.securityfocus.com/bid/12360
Bugtraq: 20050125 [USN-70-1] Perl DBI module vulnerability (Google Search)
http://marc.info/?l=bugtraq&m=110667936707597&w=2
Debian Security Information: DSA-658 (Google Search)
http://www.debian.org/security/2005/dsa-658
http://www.securityfocus.com/archive/1/426530/30/6600/threaded
http://www.mandriva.com/security/advisories?name=MDKSA-2005:030
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10552
http://www.redhat.com/support/errata/RHSA-2005-072.html
http://securitytracker.com/id?1013007
http://secunia.com/advisories/14015
http://secunia.com/advisories/14050
XForce ISS Database: dbi-library-file-overwrite(19068)
https://exchange.xforce.ibmcloud.com/vulnerabilities/19068
Common Vulnerability Exposure (CVE) ID: CVE-2005-0448
BugTraq ID: 12767
http://www.securityfocus.com/bid/12767
Conectiva Linux advisory: CLSA-2006:1056
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=001056
Debian Security Information: DSA-696 (Google Search)
http://www.debian.org/security/2005/dsa-696
HPdes Security Advisory: HPSBUX01208
http://www.securityfocus.com/advisories/8704
HPdes Security Advisory: SSRT5938
http://www.mandriva.com/security/advisories?name=MDKSA-2005:079
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10475
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A728
http://www.redhat.com/support/errata/RHSA-2005-674.html
http://www.redhat.com/support/errata/RHSA-2005-881.html
http://secunia.com/advisories/14531
http://secunia.com/advisories/17079
http://secunia.com/advisories/18075
https://usn.ubuntu.com/94-1/
CopyrightCopyright (C) 2008 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.