Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.56317
Kategorie:FreeBSD Local Security Checks
Titel:FreeBSD Ports: koffice
Zusammenfassung:The remote host is missing an update to the system; as announced in the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update to the system
as announced in the referenced advisory.

Vulnerability Insight:
The following packages are affected:

koffice
abiword

CVE-2005-2972
Multiple stack-based buffer overflows in the RTF import feature in
AbiWord before 2.2.11 allow user-complicit attackers to execute
arbitrary code via an RTF file with long identifiers, which are not
properly handled in the (1) ParseLevelText, (2) getCharsInsideBrace,
(3) HandleLists, (4) or (5) HandleAbiLists functions in
ie_imp_RTF.cpp, a different vulnerability than CVE-2005-2964.

Solution:
Update your system with the appropriate patches or
software upgrades.

CVSS Score:
5.1

CVSS Vector:
AV:N/AC:H/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2005-2972
BugTraq ID: 15096
http://www.securityfocus.com/bid/15096
Debian Security Information: DSA-894 (Google Search)
http://www.debian.org/security/2005/dsa-894
http://www.gentoo.org/security/en/glsa/glsa-200510-17.xml
http://scary.beasts.org/security/CESA-2005-006.txt
http://www.mail-archive.com/debian-bugs-rc@lists.debian.org/msg28251.html
http://www.osvdb.org/20015
http://secunia.com/advisories/17199
http://secunia.com/advisories/17200
http://secunia.com/advisories/17213
http://secunia.com/advisories/17264
http://secunia.com/advisories/17551
https://usn.ubuntu.com/203-1/
http://www.vupen.com/english/advisories/2005/2086
CopyrightCopyright (C) 2008 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.