| |||||||||||||
| Test Kennung: | 1.3.6.1.4.1.25623.1.0.69679 |
| Kategorie: | Mandrake Local Security Checks |
| Titel: | Mandriva Security Advisory MDVSA-2011:102 (rdesktop) |
| Zusammenfassung: | Mandriva Security Advisory MDVSA-2011:102 (rdesktop) |
| Beschreibung: | The remote host is missing an update to rdesktop announced via advisory MDVSA-2011:102. A vulnerability has been identified and fixed in rdesktop: Directory traversal vulnerability in the disk_create function in disk.c in rdesktop before 1.7.0, when disk redirection is enabled, allows remote RDP servers to read or overwrite arbitrary files via a .. (dot dot) in a pathname (CVE-2011-1595). Packages for 2009.0 are provided as of the Extended Maintenance Program. Please visit this link to learn more: http://store.mandriva.com/product_info.php\?cPath=149\&products_id=490 The updated packages have been patched to correct this issue. Affected: 2009.0, 2010.1, Corporate 4.0, Enterprise Server 5.0 Solution: To upgrade automatically use MandrakeUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. http://www.securityspace.com/smysecure/catid.html?in=MDVSA-2011:102 Risk factor : Medium |
| Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2011-1595 http://sourceforge.net/mailarchive/message.php?msg_id=27376554 http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061170.html http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061309.html http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061316.html http://www.mandriva.com/security/advisories?name=MDVSA-2011:102 RedHat Security Advisories: RHSA-2011:0506 https://rhn.redhat.com/errata/RHSA-2011-0506.html http://www.ubuntu.com/usn/USN-1136-1 BugTraq ID: 47419 http://www.securityfocus.com/bid/47419 http://securitytracker.com/id?1025525 http://secunia.com/advisories/44881 |
| Copyright | Copyright (c) 2011 E-Soft Inc. http://www.securityspace.com |
| Dies ist nur einer von 32582 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |
|