Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.64437
Kategorie:Gentoo Local Security Checks
Titel:Gentoo Security Advisory GLSA 200907-15 (nagios-core)
Zusammenfassung:The remote host is missing updates announced in;advisory GLSA 200907-15.
Beschreibung:Summary:
The remote host is missing updates announced in
advisory GLSA 200907-15.

Vulnerability Insight:
Multiple vulnerabilities in Nagios may lead to the execution of arbitrary
code.

Solution:
All Nagios users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose '>=net-analyzer/nagios-core-3.0.6-r2'

NOTE: Users of the Nagios 2 branch can update to version 2.12-r1 which
contains a patch to fix CVE-2009-2288. However, that branch is not
supported upstream or in Gentoo and we are unaware whether the other
vulnerabilities affect 2.x installations.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2008-5027
BugTraq ID: 32156
http://www.securityfocus.com/bid/32156
http://security.gentoo.org/glsa/glsa-200907-15.xml
HPdes Security Advisory: HPSBMA02419
http://marc.info/?l=bugtraq&m=124156641928637&w=2
HPdes Security Advisory: SSRT090060
http://www.nagios.org/development/history/nagios-3x.php
http://sourceforge.net/mailarchive/forum.php?thread_name=4914396D.5010009%40op5.se&forum_name=nagios-devel
http://www.openwall.com/lists/oss-security/2008/11/06/2
http://www.securitytracker.com/id?1022165
http://secunia.com/advisories/33320
http://secunia.com/advisories/35002
http://www.ubuntu.com/usn/USN-698-1
https://www.ubuntu.com/usn/USN-698-3/
http://www.vupen.com/english/advisories/2008/3029
http://www.vupen.com/english/advisories/2008/3364
http://www.vupen.com/english/advisories/2009/1256
Common Vulnerability Exposure (CVE) ID: CVE-2008-5028
http://osvdb.org/49678
http://secunia.com/advisories/32610
http://secunia.com/advisories/32630
XForce ISS Database: nagios-cmd-csrf(46426)
https://exchange.xforce.ibmcloud.com/vulnerabilities/46426
XForce ISS Database: op5monitor-unspecified-csrf(46521)
https://exchange.xforce.ibmcloud.com/vulnerabilities/46521
Common Vulnerability Exposure (CVE) ID: CVE-2008-6373
BugTraq ID: 32611
http://www.securityfocus.com/bid/32611
http://secunia.com/advisories/32909
XForce ISS Database: nagios-cgis-unspecified(47081)
https://exchange.xforce.ibmcloud.com/vulnerabilities/47081
Common Vulnerability Exposure (CVE) ID: CVE-2009-2288
Debian Security Information: DSA-1825 (Google Search)
http://www.debian.org/security/2009/dsa-1825
HPdes Security Advisory: HPSBMA02513
http://marc.info/?l=bugtraq&m=126996888626964&w=2
HPdes Security Advisory: SSRT090110
http://www.securitytracker.com/id?1022503
http://secunia.com/advisories/35543
http://secunia.com/advisories/35688
http://secunia.com/advisories/35692
http://secunia.com/advisories/39227
http://www.ubuntu.com/usn/USN-795-1
http://www.vupen.com/english/advisories/2010/0750
CopyrightCopyright (C) 2009 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.