Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.72456
Kategorie:Gentoo Local Security Checks
Titel:Gentoo Security Advisory GLSA 201209-22 (libgssglue)
Zusammenfassung:The remote host is missing updates announced in;advisory GLSA 201209-22.
Beschreibung:Summary:
The remote host is missing updates announced in
advisory GLSA 201209-22.

Vulnerability Insight:
A vulnerability in libgssglue may allow a local attacker to gain
escalated privileges.

Solution:
All libgssglue users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose '>=net-libs/libgssglue-0.4'

CVSS Score:
6.2

CVSS Vector:
AV:L/AC:H/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2011-2709
45075
http://secunia.com/advisories/45075
48490
http://www.securityfocus.com/bid/48490
50785
http://secunia.com/advisories/50785
50973
http://secunia.com/advisories/50973
FEDORA-2012-7971
http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082297.html
FEDORA-2012-8067
http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082072.html
SUSE-SU-2011:0696
http://lwn.net/Alerts/449415/
[oss-security] 20110721 CVE Request -- libgssapi, libgssglue -- Ability to load untrusted configuration file, when loading GSS mechanisms and their definitions during initialization
http://www.openwall.com/lists/oss-security/2011/07/21/3
[oss-security] 20110722 Re: CVE Request -- libgssapi, libgssglue -- Ability to load untrusted configuration file, when loading GSS mechanisms and their definitions during initialization
http://www.openwall.com/lists/oss-security/2011/07/22/4
[oss-security] 20110812 Re: CVE Request -- libgssapi, libgssglue -- Ability to load untrusted configuration file, when loading GSS mechanisms and their definitions during initialization
http://www.openwall.com/lists/oss-security/2011/08/12/10
http://www.citi.umich.edu/projects/nfsv4/linux/libgssglue/libgssglue-0.4.tar.gz
https://bugzilla.novell.com/show_bug.cgi?id=694598
CopyrightCopyright (C) 2012 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.