Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.13.2010.060.03
Kategorie:Slackware Local Security Checks
Titel:Slackware: Security Advisory (SSA:2010-060-03)
Zusammenfassung:The remote host is missing an update for the 'gzip' package(s) announced via the SSA:2010-060-03 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'gzip' package(s) announced via the SSA:2010-060-03 advisory.

Vulnerability Insight:
New gzip packages are available for Slackware 13.0 (64-bit) and -current to
fix a security issue.

More details about this issue may be found in the Common
Vulnerabilities and Exposures (CVE) database:

[link moved to references]


Here are the details from the Slackware64 13.0 ChangeLog:
+--------------------------+
patches/packages/gzip-1.4-x86_64-1_slack13.0.tgz: Upgraded.
gzip -d could segfault and/or clobber the stack, possibly leading to
arbitrary code execution. This affects x86_64 but not 32-bit systems.
For more information, see:
[link moved to references]
(* Security fix *)
+--------------------------+

Affected Software/OS:
'gzip' package(s) on Slackware 13.0, Slackware current.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2010-0001
1023490
http://securitytracker.com/id?1023490
38220
http://secunia.com/advisories/38220
38223
http://secunia.com/advisories/38223
38225
http://secunia.com/advisories/38225
38232
http://secunia.com/advisories/38232
40551
http://secunia.com/advisories/40551
40655
http://secunia.com/advisories/40655
40689
http://secunia.com/advisories/40689
61869
http://www.osvdb.org/61869
ADV-2010-0185
http://www.vupen.com/english/advisories/2010/0185
ADV-2010-1796
http://www.vupen.com/english/advisories/2010/1796
ADV-2010-1872
http://www.vupen.com/english/advisories/2010/1872
APPLE-SA-2010-11-10-1
http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html
DSA-1974
http://www.debian.org/security/2010/dsa-1974
DSA-2074
http://www.debian.org/security/2010/dsa-2074
HPSBMA02554
http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02286083
MDVSA-2010:019
http://www.mandriva.com/security/advisories?name=MDVSA-2010:019
MDVSA-2010:020
http://www.mandriva.com/security/advisories?name=MDVSA-2010:020
MDVSA-2011:152
http://www.mandriva.com/security/advisories?name=MDVSA-2011:152
RHSA-2010:0061
http://www.redhat.com/support/errata/RHSA-2010-0061.html
RHSA-2010:0095
https://rhn.redhat.com/errata/RHSA-2010-0095.html
SSRT100018
SUSE-SA:2010:008
http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html
USN-889-1
http://www.ubuntu.com/usn/USN-889-1
http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=a3db5806d012082b9e25cc36d09f19cd736a468f
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705
http://ncompress.sourceforge.net/#status
http://savannah.gnu.org/forum/forum.php?forum_id=6153
http://support.apple.com/kb/HT4435
https://bugzilla.redhat.com/show_bug.cgi?id=554418
oval:org.mitre.oval:def:10546
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10546
oval:org.mitre.oval:def:7511
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7511
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.