Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.58903
Kategorie:Red Hat Local Security Checks
Titel:RedHat Security Advisory RHSA-2007:0345
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing updates announced in
advisory RHSA-2007:0345.

The vixie-cron package contains the Vixie version of cron. Cron is a
standard UNIX daemon that runs specified programs at scheduled times.

Raphael Marichez discovered a denial of service bug in the way vixie-cron
verifies crontab file integrity. A local user with the ability to create a
hardlink to /etc/crontab can prevent vixie-cron from executing certain
system cron jobs. (CVE-2007-1856)

All users of vixie-cron should upgrade to these updated packages, which
contain a backported patch to correct this issue.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2007-0345.html
http://www.redhat.com/security/updates/classification/#moderate

Risk factor : Medium

CVSS Score:
2.1

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2007-1856
BugTraq ID: 23520
http://www.securityfocus.com/bid/23520
http://lists.grok.org.uk/pipermail/full-disclosure/2007-September/065902.html
http://security.gentoo.org/glsa/glsa-200704-11.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2007:234
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11463
RedHat Security Advisories: RHSA-2007:0345
http://rhn.redhat.com/errata/RHSA-2007-0345.html
http://www.securitytracker.com/id?1018081
http://secunia.com/advisories/24905
http://secunia.com/advisories/24995
http://secunia.com/advisories/25321
http://secunia.com/advisories/25723
http://secunia.com/advisories/26909
http://secunia.com/advisories/27706
http://secunia.com/advisories/27886
SuSE Security Announcement: SUSE-SR:2007:007 (Google Search)
http://www.novell.com/linux/security/advisories/2007_007_suse.html
http://www.vupen.com/english/advisories/2007/3229
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.