Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.55671
Categoría:Conectiva Local Security Checks
Título:Conectiva Security Advisory CLSA-2005:1035
Resumen:NOSUMMARY
Descripción:Description:

The remote host is missing updates announced in
advisory CLSA-2005:1035.

Chris Evans discovered several buffer overflows in the AbiWord's
RTF importer module. By tricking a user into opening a RTF file
with specially crafted long identifiers, an attacker could exploit
this to execute arbitrary code with the privileges of the AbiWord
user.

Solution:
The apt tool can be used to perform RPM package upgrades
by running 'apt-get update' followed by 'apt-get upgrade'

http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=001035
http://www.abiword.org/

Risk factor : High

CVSS Score:
7.5

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2005-2964
BugTraq ID: 14971
http://www.securityfocus.com/bid/14971
Debian Security Information: DSA-894 (Google Search)
http://www.debian.org/security/2005/dsa-894
http://www.gentoo.org/security/en/glsa/glsa-200509-20.xml
http://www.gentoo.org/security/en/glsa/glsa-200510-04.xml
http://www.osvdb.org/19717
http://securitytracker.com/id?1014982
http://secunia.com/advisories/16982
http://secunia.com/advisories/16990
http://secunia.com/advisories/17012
http://secunia.com/advisories/17052
http://secunia.com/advisories/17070
http://secunia.com/advisories/17215
http://secunia.com/advisories/17551
SuSE Security Announcement: SUSE-SR:2005:023 (Google Search)
http://www.novell.com/linux/security/advisories/2005_23_sr.html
http://www.ubuntu.com/usn/usn-188-1
XForce ISS Database: abiword-rtf-importer-bo(22454)
https://exchange.xforce.ibmcloud.com/vulnerabilities/22454
Common Vulnerability Exposure (CVE) ID: CVE-2005-2972
BugTraq ID: 15096
http://www.securityfocus.com/bid/15096
http://www.gentoo.org/security/en/glsa/glsa-200510-17.xml
http://scary.beasts.org/security/CESA-2005-006.txt
http://www.mail-archive.com/debian-bugs-rc@lists.debian.org/msg28251.html
http://www.osvdb.org/20015
http://secunia.com/advisories/17199
http://secunia.com/advisories/17200
http://secunia.com/advisories/17213
http://secunia.com/advisories/17264
https://usn.ubuntu.com/203-1/
http://www.vupen.com/english/advisories/2005/2086
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.