Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.55076
Kategorie:Conectiva Local Security Checks
Titel:Conectiva Security Advisory CLSA-2005:986 (tcpdump)
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing updates announced in
advisory CLSA-2005:986.

1.CVE-2005-1278[2]
The isis_print function, as called by isoclns_print, in tcpdump
3.9.1 and earlier allows remote attackers to cause a denial of
service (infinite loop) via a zero length, as demonstrated
using a GRE packet.

2.CVE-2005-1279[3]
tcpdump 3.8.3 and earlier allows remote attackers to cause a
denial of service (infinite loop) via a specially crafted
BGP packet, which is not properly handled by RT_ROUTING_INFO,
or LDP packet, which is not properly handled by the ldp_print
function.

3.CVE-2005-1280[4]
The rsvp_print function in tcpdump 3.9.1 and earlier allows
remote attackers to cause a denial of service (infinite loop)
via a crafted RSVP packet of length 4.

Solution:
The apt tool can be used to perform RPM package upgrades
by running 'apt-get update' followed by 'apt-get upgrade'

http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000986
http://www.tcpdump.org/

Risk factor : Medium

CVSS Score:
5.0

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2005-1278
13392
http://www.securityfocus.com/bid/13392
15125
http://secunia.com/advisories/15125
18146
http://secunia.com/advisories/18146
20050426 tcpdump[v3.8.x/v3.9.1]: ISIS, BGP, and LDP infinite loop DOS exploits.
http://www.securityfocus.com/archive/1/396932
FLSA:156139
http://www.securityfocus.com/archive/1/430292/100/0/threaded
RHSA-2005:417
http://www.redhat.com/support/errata/RHSA-2005-417.html
RHSA-2005:421
http://www.redhat.com/support/errata/RHSA-2005-421.html
SCOSA-2005.60
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.60/SCOSA-2005.60.txt
oval:org.mitre.oval:def:10159
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10159
Common Vulnerability Exposure (CVE) ID: CVE-2005-1279
13389
http://www.securityfocus.com/bid/13389
17101
http://secunia.com/advisories/17101
DSA-850
http://www.debian.org/security/2005/dsa-850
oval:org.mitre.oval:def:9601
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9601
Common Vulnerability Exposure (CVE) ID: CVE-2005-1280
13390
http://www.securityfocus.com/bid/13390
20050426 tcpdump(/ethereal)[]: (RSVP) rsvp_print() infinite loop DOS.
http://www.securityfocus.com/archive/1/396930
oval:org.mitre.oval:def:10732
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10732
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.