Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.831300
Kategorie:Mandrake Local Security Checks
Titel:Mandriva Update for dhcp MDVSA-2011:001 (dhcp)
Zusammenfassung:The remote host is missing an update for the 'dhcp'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'dhcp'
package(s) announced via the referenced advisory.

Vulnerability Insight:
A vulnerability has been found and corrected in dhcp:

ISC DHCP server 4.2 before 4.2.0-P2, when configured to use failover
partnerships, allows remote attackers to cause a denial of service
(communications-interrupted state and DHCP client service loss)
by connecting to a port that is only intended for a failover peer,
as demonstrated by a Nagios check_tcp process check to TCP port 520
(CVE-2010-3616).

The updated packages have been patched to correct this issue.

Affected Software/OS:
dhcp on Mandriva Linux 2009.0,
Mandriva Linux 2009.0/X86_64,
Mandriva Linux 2010.0,
Mandriva Linux 2010.0/X86_64,
Mandriva Linux 2010.1,
Mandriva Linux 2010.1/X86_64,
Mandriva Enterprise Server 5,
Mandriva Enterprise Server 5/X86_64

Solution:
Please Install the Updated Packages.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2010-3616
BugTraq ID: 45360
http://www.securityfocus.com/bid/45360
CERT/CC vulnerability note: VU#159528
http://www.kb.cert.org/vuls/id/159528
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052329.html
http://www.mandriva.com/security/advisories?name=MDVSA-2011:001
https://lists.isc.org/pipermail/dhcp-users/2010-December/012368.html
http://www.securitytracker.com/id?1024862
http://secunia.com/advisories/42618
http://secunia.com/advisories/42682
http://www.vupen.com/english/advisories/2010/3208
http://www.vupen.com/english/advisories/2011/0052
CopyrightCopyright (C) 2011 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.