![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.51109 |
Category: | Red Hat Local Security Checks |
Title: | RedHat Security Advisory RHSA-2004:409 |
Summary: | NOSUMMARY |
Description: | Description: The remote host is missing updates announced in advisory RHSA-2004:409. SoX (Sound eXchange) is a sound file format converter. SoX can convert between many different digitized sound formats and perform simple sound manipulation functions, including sound effects. Buffer overflows existed in the parsing of WAV file header fields. It was possible that a malicious WAV file could have caused arbitrary code to be executed when the file was played or converted. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2004-0557 to these issues. All users of sox should upgrade to these updated packages, which resolve these issues as well as fix a number of minor bugs. Solution: Please note that this update is available via Red Hat Network. To use Red Hat Network, launch the Red Hat Update Agent with the following command: up2date http://rhn.redhat.com/errata/RHSA-2004-409.html Risk factor : Critical CVSS Score: 10.0 |
Cross-Ref: |
BugTraq ID: 10819 Common Vulnerability Exposure (CVE) ID: CVE-2004-0557 http://www.securityfocus.com/bid/10819 Conectiva Linux advisory: CLA-2004:855 http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000855 Debian Security Information: DSA-565 (Google Search) http://www.debian.org/security/2004/dsa-565 http://lwn.net/Articles/95529/ http://lwn.net/Articles/95530/ https://bugzilla.fedora.us/show_bug.cgi?id=1945 http://seclists.org/fulldisclosure/2004/Jul/1227.html http://www.gentoo.org/security/en/glsa/glsa-200407-23.xml http://www.mandriva.com/security/advisories?name=MDKSA-2004:076 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9801 http://www.redhat.com/support/errata/RHSA-2004-409.html http://secunia.com/advisories/12175 http://archives.neohapsis.com/archives/vulnwatch/2004-q3/0014.html XForce ISS Database: sox-wav-bo(16827) https://exchange.xforce.ibmcloud.com/vulnerabilities/16827 |
Copyright | Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |