Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.61796
Kategorie:FreeBSD Local Security Checks
Titel:FreeBSD Ports: libspf2
Zusammenfassung:The remote host is missing an update to the system; as announced in the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update to the system
as announced in the referenced advisory.

Vulnerability Insight:
The following package is affected: libspf2

CVE-2008-2469
Heap-based buffer overflow in the SPF_dns_resolv_lookup function in
Spf_dns_resolv.c in libspf2 before 1.2.8 allows remote attackers to
execute arbitrary code via a long DNS TXT record with a modified
length field.

Solution:
Update your system with the appropriate patches or
software upgrades.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2008-2469
BugTraq ID: 31881
http://www.securityfocus.com/bid/31881
CERT/CC vulnerability note: VU#183657
http://www.kb.cert.org/vuls/id/183657
Debian Security Information: DSA-1659 (Google Search)
http://www.debian.org/security/2008/dsa-1659
https://www.exploit-db.com/exploits/6805
http://security.gentoo.org/glsa/glsa-200810-03.xml
http://www.doxpara.com/?p=1263
http://www.doxpara.com/?page_id=1256
http://secunia.com/advisories/32396
http://secunia.com/advisories/32450
http://secunia.com/advisories/32496
http://secunia.com/advisories/32720
http://securityreason.com/securityalert/4487
http://www.vupen.com/english/advisories/2008/2896
XForce ISS Database: libspf2-dnstxtrecord-bo(46055)
https://exchange.xforce.ibmcloud.com/vulnerabilities/46055
CopyrightCopyright (C) 2008 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.