Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.59035
Kategorie:Mandrake Local Security Checks
Titel:Mandrake Security Advisory MDKSA-2007:201 (hplip)
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing an update to hplip
announced via advisory MDKSA-2007:201.

A vulnerability in the hpssd tool was discovered where it did not
correctly handle shell meta-characters. A local attacker could use
this flaw to execute arbitrary commands as the hplip user.

As well, this update fixes a problem with some HP scanners on Mandriva
Linux 2007.1, particularly HP PSC 1315, which wouldn't be detected
and also fixes a problem with HP 1220 and possibly other models when
scanning via the OpenOffice.org suite.

Updated packages have been patched to prevent these issues.

Affected: 2007.0, 2007.1, 2008.0, Corporate 4.0

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2007:201
http://qa.mandriva.com/show_bug.cgi?id=28669
http://qa.mandriva.com/show_bug.cgi?id=30719

Risk factor : High

CVSS Score:
7.6

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2007-5208
BugTraq ID: 26054
http://www.securityfocus.com/bid/26054
Debian Security Information: DSA-1462 (Google Search)
http://www.debian.org/security/2008/dsa-1462
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00200.html
http://security.gentoo.org/glsa/glsa-200710-26.xml
http://www.mandriva.com/en/security/advisories?name=MDKSA-2007:201
https://launchpad.net/bugs/149121
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10692
http://www.redhat.com/support/errata/RHSA-2007-0960.html
http://www.securitytracker.com/id?1018806
http://secunia.com/advisories/27202
http://secunia.com/advisories/27221
http://secunia.com/advisories/27224
http://secunia.com/advisories/27232
http://secunia.com/advisories/27271
http://secunia.com/advisories/27332
http://secunia.com/advisories/27397
http://secunia.com/advisories/28453
SuSE Security Announcement: SUSE-SR:2007:021 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2007-10/msg00006.html
https://usn.ubuntu.com/530-1/
http://www.vupen.com/english/advisories/2007/3479
XForce ISS Database: hplip-hpssd-command-execution(37183)
https://exchange.xforce.ibmcloud.com/vulnerabilities/37183
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.