Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.61400
Kategorie:Red Hat Local Security Checks
Titel:RedHat Security Advisory RHSA-2008:0818
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing updates announced in
advisory RHSA-2008:0818.

The hplip (Hewlett-Packard Linux Imaging and Printing) packages provide
drivers for Hewlett-Packard printers and multifunction peripherals.

A flaw was discovered in the hplip alert-mailing functionality. A local
attacker could elevate their privileges by using specially-crafted packets
to trigger alert mails, which are sent by the root account. (CVE-2008-2940)

A flaw was discovered in the hpssd message parser. By sending
specially-crafted packets, a local attacker could cause a denial of
service, stopping the hpssd process. (CVE-2008-2941)

Users of hplip should upgrade to these updated packages, which contain
backported patches to correct these issues.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2008-0818.html
http://www.redhat.com/security/updates/classification/#moderate

Risk factor : High

CVSS Score:
7.2

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2008-2940
1020684
http://securitytracker.com/id?1020684
30683
http://www.securityfocus.com/bid/30683
31470
http://secunia.com/advisories/31470
31499
http://secunia.com/advisories/31499
32316
http://secunia.com/advisories/32316
32792
http://secunia.com/advisories/32792
MDVSA-2008:169
http://www.mandriva.com/security/advisories?name=MDVSA-2008:169
RHSA-2008:0818
http://www.redhat.com/support/errata/RHSA-2008-0818.html
SUSE-SR:2008:021
http://lists.opensuse.org/opensuse-security-announce/2008-10/msg00006.html
USN-674-1
http://www.ubuntu.com/usn/USN-674-1
USN-674-2
http://www.ubuntu.com/usn/USN-674-2
hplip-alertmailing-privilege-escalation(44441)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44441
https://bugzilla.redhat.com/show_bug.cgi?id=455235
oval:org.mitre.oval:def:10136
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10136
Common Vulnerability Exposure (CVE) ID: CVE-2008-2941
1020683
http://securitytracker.com/id?1020683
hplip-hpssd-dos(44440)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44440
https://bugzilla.redhat.com/show_bug.cgi?id=457052
oval:org.mitre.oval:def:10636
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10636
CopyrightCopyright (c) 2008 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.