Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2018.0026
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2018-0026)
Zusammenfassung:The remote host is missing an update for the 'calibre, krename, podofo' package(s) announced via the MGASA-2018-0026 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'calibre, krename, podofo' package(s) announced via the MGASA-2018-0026 advisory.

Vulnerability Insight:
The podofo package has been updated to fix several security issues.
The krename and calibre packages have been rebuilt against the updated
podofo.

Affected Software/OS:
'calibre, krename, podofo' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-5852
BugTraq ID: 97032
http://www.securityfocus.com/bid/97032
https://blogs.gentoo.org/ago/2017/02/01/podofo-infinite-loop-in-podofopdfpagegetinheritedkeyfromobject-pdfpage-cpp/
http://www.openwall.com/lists/oss-security/2017/02/01/12
http://www.openwall.com/lists/oss-security/2017/02/02/10
Common Vulnerability Exposure (CVE) ID: CVE-2017-5853
BugTraq ID: 96066
http://www.securityfocus.com/bid/96066
https://blogs.gentoo.org/ago/2017/02/01/podofo-signed-integer-overflow-in-pdfparser-cpp/
Common Vulnerability Exposure (CVE) ID: CVE-2017-5854
BugTraq ID: 96072
http://www.securityfocus.com/bid/96072
https://blogs.gentoo.org/ago/2017/02/01/podofo-null-pointer-dereference-in-pdfoutputstream-cpp/
http://www.openwall.com/lists/oss-security/2017/02/01/14
http://www.openwall.com/lists/oss-security/2017/02/02/12
Common Vulnerability Exposure (CVE) ID: CVE-2017-5855
BugTraq ID: 96516
http://www.securityfocus.com/bid/96516
https://blogs.gentoo.org/ago/2017/02/01/podofo-null-pointer-dereference-in-podofopdfparserreadxrefsubsection-pdfparser-cpp/
Common Vulnerability Exposure (CVE) ID: CVE-2017-5886
96512
http://www.securityfocus.com/bid/96512
https://blogs.gentoo.org/ago/2017/02/03/podofo-heap-based-buffer-overflow-in-podofopdftokenizergetnexttoken-pdftokenizer-cpp/
Common Vulnerability Exposure (CVE) ID: CVE-2017-6840
https://blogs.gentoo.org/ago/2017/03/02/podofo-invalid-memory-read-in-colorchangergetcolorfromstack-colorchanger-cpp/
Common Vulnerability Exposure (CVE) ID: CVE-2017-6844
https://blogs.gentoo.org/ago/2017/03/02/podofo-global-buffer-overflow-in-podofopdfparserreadxrefsubsection-pdfparser-cpp/
Common Vulnerability Exposure (CVE) ID: CVE-2017-6847
https://blogs.gentoo.org/ago/2017/03/02/podofo-null-pointer-dereference-in-podofopdfvariantdelayedload-pdfvariant-h/
Common Vulnerability Exposure (CVE) ID: CVE-2017-7378
BugTraq ID: 97296
http://www.securityfocus.com/bid/97296
https://blogs.gentoo.org/ago/2017/03/31/podofo-heap-based-buffer-overflow-in-podofopdfpainterexpandtabs-pdfpainter-cpp
Common Vulnerability Exposure (CVE) ID: CVE-2017-7379
https://blogs.gentoo.org/ago/2017/03/31/podofo-heap-based-buffer-overflow-in-podofopdfsimpleencodingconverttoencoding-pdfencoding-cpp
Common Vulnerability Exposure (CVE) ID: CVE-2017-7380
https://blogs.gentoo.org/ago/2017/03/31/podofo-four-null-pointer-dereference
Common Vulnerability Exposure (CVE) ID: CVE-2017-7794
http://www.securitytracker.com/id/1039124
Common Vulnerability Exposure (CVE) ID: CVE-2017-8787
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=861738
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.