| |||||||||||||
| Test Kennung: | 1.3.6.1.4.1.25623.1.0.71004 |
| Kategorie: | Ubuntu Local Security Checks |
| Titel: | Ubuntu USN-1274-1 (linux-image-2.6.32-420-dove) |
| Zusammenfassung: | Ubuntu USN-1274-1 (linux-image-2.6.32-420-dove) |
| Beschreibung: | The remote host is missing an update to linux-image-2.6.32-420-dove announced via advisory USN-1274-1. Details: Vasily Averin discovered that the NFS Lock Manager (NLM) incorrectly handled unlock requests. A local attacker could exploit this to cause a denial of service. (CVE-2011-2491) Robert Swiecki discovered that mapping extensions were incorrectly handled. A local attacker could exploit this to crash the system, leading to a denial of service. (CVE-2011-2496) It was discovered that the wireless stack incorrectly verified SSID lengths. A local attacker could exploit this to cause a denial of service or gain root privileges. (CVE-2011-2517) Ben Pfaff discovered that Classless Queuing Disciplines (qdiscs) were being incorrectly handled. A local attacker could exploit this to crash the system, leading to a denial of service. (CVE-2011-2525) Solution: The problem can be corrected by updating your system to the following package versions: Ubuntu 10.10: linux-image-2.6.32-420-dove 2.6.32-420.38 http://www.securityspace.com/smysecure/catid.html?in=USN-1274-1 |
| Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2011-2491 Common Vulnerability Exposure (CVE) ID: CVE-2011-2496 http://www.openwall.com/lists/oss-security/2011/06/27/2 Common Vulnerability Exposure (CVE) ID: CVE-2011-2517 http://www.openwall.com/lists/oss-security/2011/07/01/4 Common Vulnerability Exposure (CVE) ID: CVE-2011-2525 http://kerneltrap.org/mailarchive/linux-netdev/2010/5/21/6277805 http://openwall.com/lists/oss-security/2011/07/12/1 |
| Copyright | Copyright (c) 2012 E-Soft Inc. http://www.securityspace.com |
| Dies ist nur einer von 32582 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |
|