Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.72468
Kategorie:Mandrake Local Security Checks
Titel:Mandriva Security Advisory MDVSA-2012:151-1 (ghostscript)
Zusammenfassung:NOSUMMARY
Beschreibung:Description:
The remote host is missing an update to ghostscript
announced via advisory MDVSA-2012:151-1.

A security issue was identified and fixed in ghostscript:

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in Ghostscript'
s International Color Consortium Format library
(icclib). An attacker could create a specially-crafted PostScript or
PDF file with embedded images that would cause Ghostscript to crash
or, potentially, execute arbitrary code with the privileges of the
user running Ghostscript (CVE-2012-4405).

The updated packages have been patched to correct this issue.

Update:

Packages for Mandriva Linux 2011 is being provided.

Affected: 2011.

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDVSA-2012:151-1

Risk factor : High

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2012-4405
1027517
http://www.securitytracker.com/id?1027517
50719
http://secunia.com/advisories/50719
55494
http://www.securityfocus.com/bid/55494
GLSA-201412-17
http://security.gentoo.org/glsa/glsa-201412-17.xml
MDVSA-2012:151
http://www.mandriva.com/security/advisories?name=MDVSA-2012:151
MDVSA-2013:089
http://www.mandriva.com/security/advisories?name=MDVSA-2013:089
MDVSA-2013:090
http://www.mandriva.com/security/advisories?name=MDVSA-2013:090
RHSA-2012:1256
http://rhn.redhat.com/errata/RHSA-2012-1256.html
SUSE-SU-2012:1222
http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00031.html
USN-1581-1
http://www.ubuntu.com/usn/USN-1581-1
[oss-security] 20120911 CVE-2012-4405 ghostscript, argyllcms: Array index error leading to heap-based bufer OOB write
http://www.openwall.com/lists/oss-security/2012/09/11/2
https://wiki.mageia.org/en/Support/Advisories/MGASA-2012-0301
icclib-pdf-bo(78411)
https://exchange.xforce.ibmcloud.com/vulnerabilities/78411
openSUSE-SU-2012:1289
http://lists.opensuse.org/opensuse-security-announce/2012-10/msg00001.html
openSUSE-SU-2012:1290
http://lists.opensuse.org/opensuse-updates/2012-10/msg00015.html
CopyrightCopyright (c) 2012 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.