Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2014.0461
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2014-0461)
Zusammenfassung:The remote host is missing an update for the 'hawtjni' package(s) announced via the MGASA-2014-0461 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'hawtjni' package(s) announced via the MGASA-2014-0461 advisory.

Vulnerability Insight:
The HawtJNI Library class wrote native libraries to a predictable file name
in /tmp/ when the native libraries were bundled in a JAR file, and no
custom library path was specified. A local attacker could overwrite these
native libraries with malicious versions during the window between when
HawtJNI writes them and when they are executed (CVE-2013-2035).

Affected Software/OS:
'hawtjni' package(s) on Mageia 3.

Solution:
Please install the updated package(s).

CVSS Score:
4.4

CVSS Vector:
AV:L/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2013-2035
1029431
http://www.securitytracker.com/id/1029431
53415
http://secunia.com/advisories/53415
54108
http://secunia.com/advisories/54108
57915
http://secunia.com/advisories/57915
93411
http://www.osvdb.org/93411
RHSA-2013:1029
http://rhn.redhat.com/errata/RHSA-2013-1029.html
RHSA-2013:1784
http://rhn.redhat.com/errata/RHSA-2013-1784.html
RHSA-2013:1785
http://rhn.redhat.com/errata/RHSA-2013-1785.html
RHSA-2013:1786
http://rhn.redhat.com/errata/RHSA-2013-1786.html
RHSA-2014:0029
http://rhn.redhat.com/errata/RHSA-2014-0029.html
RHSA-2014:0245
http://rhn.redhat.com/errata/RHSA-2014-0245.html
RHSA-2014:0254
http://rhn.redhat.com/errata/RHSA-2014-0254.html
RHSA-2014:0400
http://rhn.redhat.com/errata/RHSA-2014-0400.html
RHSA-2015:0034
http://rhn.redhat.com/errata/RHSA-2015-0034.html
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-2035
https://github.com/fusesource/hawtjni/commit/92c266170ce98edc200c656bd034a237098b8aa5
https://github.com/jline/jline2/issues/85
https://github.com/jruby/jruby/issues/732
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.