Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.58959
Categoría:Red Hat Local Security Checks
Título:RedHat Security Advisory RHSA-2007:0957
Resumen:NOSUMMARY
Descripción:Description:

The remote host is missing updates announced in
advisory RHSA-2007:0957.

Open Phone Abstraction Library (opal) is implementation of various
telephony and video communication protocols for use over packet based
networks.

In Red Hat Enterprise Linux 5, the Ekiga application uses opal.

A flaw was discovered in the way opal handled certain Session Initiation
Protocol (SIP) packets. An attacker could use this flaw to crash an
application, such as Ekiga, which is linked with opal. (CVE-2007-4924)

Users should upgrade to these updated opal packages which contain a
backported patch to correct this issue.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2007-0957.html
http://www.redhat.com/security/updates/classification/#moderate

Risk factor : Medium

CVSS Score:
5.0

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2007-4924
BugTraq ID: 25955
http://www.securityfocus.com/bid/25955
Bugtraq: 20071011 S21SEC-037-en: OPAL SIP Protocol Remote Denial of Service (Google Search)
http://www.securityfocus.com/archive/1/482120/30/4500/threaded
https://www.exploit-db.com/exploits/9240
http://www.mandriva.com/security/advisories?name=MDKSA-2007:205
http://www.s21sec.com/avisos/s21sec-037-en.txt
http://mail.gnome.org/archives/ekiga-list/2007-September/msg00103.html
http://osvdb.org/41637
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11398
http://www.redhat.com/support/errata/RHSA-2007-0957.html
http://www.securitytracker.com/id?1018776
http://secunia.com/advisories/27118
http://secunia.com/advisories/27128
http://secunia.com/advisories/27129
http://secunia.com/advisories/27271
http://secunia.com/advisories/27524
http://secunia.com/advisories/28380
SuSE Security Announcement: SUSE-SR:2007:021 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2007-10/msg00006.html
http://www.ubuntu.com/usn/usn-562-1
http://www.vupen.com/english/advisories/2007/3413
http://www.vupen.com/english/advisories/2007/3414
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.