Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2018.0021
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2018-0021)
Zusammenfassung:The remote host is missing an update for the 'libical' package(s) announced via the MGASA-2018-0021 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'libical' package(s) announced via the MGASA-2018-0021 advisory.

Vulnerability Insight:
libical 1.0 allows remote attackers to cause a denial of service
(use-after-free) via a crafted ics file (CVE-2016-5824).

The icaltime_from_string function in libical 0.47 and 1.0 allows remote
attackers to cause a denial of service (out-of-bounds heap read) via a
crafted string to the icalparser_parse_string function (CVE-2016-5827).

libical allows remote attackers to cause a denial of service
(use-after-free) and possibly read heap memory via a crafted ics file
(CVE-2016-9584).

Affected Software/OS:
'libical' package(s) on Mageia 5, Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
6.4

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2016-5824
BugTraq ID: 91459
http://www.securityfocus.com/bid/91459
https://security.gentoo.org/glsa/201904-02
https://security.gentoo.org/glsa/201904-07
https://github.com/libical/libical/issues/235
http://www.openwall.com/lists/oss-security/2016/06/25/4
http://www.openwall.com/lists/oss-security/2017/01/20/16
RedHat Security Advisories: RHSA-2019:0269
https://access.redhat.com/errata/RHSA-2019:0269
RedHat Security Advisories: RHSA-2019:0270
https://access.redhat.com/errata/RHSA-2019:0270
https://usn.ubuntu.com/3897-1/
Common Vulnerability Exposure (CVE) ID: CVE-2016-5827
https://bugzilla.mozilla.org/show_bug.cgi?id=1281043
Common Vulnerability Exposure (CVE) ID: CVE-2016-9584
94948
http://www.securityfocus.com/bid/94948
[oss-security] 20161215 CVE-2016-9584: heap use-after-free on libical
http://www.openwall.com/lists/oss-security/2016/12/15/5
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.