Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.61400
Categoría:Red Hat Local Security Checks
Título:RedHat Security Advisory RHSA-2008:0818
Resumen:NOSUMMARY
Descripción:Description:

The remote host is missing updates announced in
advisory RHSA-2008:0818.

The hplip (Hewlett-Packard Linux Imaging and Printing) packages provide
drivers for Hewlett-Packard printers and multifunction peripherals.

A flaw was discovered in the hplip alert-mailing functionality. A local
attacker could elevate their privileges by using specially-crafted packets
to trigger alert mails, which are sent by the root account. (CVE-2008-2940)

A flaw was discovered in the hpssd message parser. By sending
specially-crafted packets, a local attacker could cause a denial of
service, stopping the hpssd process. (CVE-2008-2941)

Users of hplip should upgrade to these updated packages, which contain
backported patches to correct these issues.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2008-0818.html
http://www.redhat.com/security/updates/classification/#moderate

Risk factor : High

CVSS Score:
7.2

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2008-2940
1020684
http://securitytracker.com/id?1020684
30683
http://www.securityfocus.com/bid/30683
31470
http://secunia.com/advisories/31470
31499
http://secunia.com/advisories/31499
32316
http://secunia.com/advisories/32316
32792
http://secunia.com/advisories/32792
MDVSA-2008:169
http://www.mandriva.com/security/advisories?name=MDVSA-2008:169
RHSA-2008:0818
http://www.redhat.com/support/errata/RHSA-2008-0818.html
SUSE-SR:2008:021
http://lists.opensuse.org/opensuse-security-announce/2008-10/msg00006.html
USN-674-1
http://www.ubuntu.com/usn/USN-674-1
USN-674-2
http://www.ubuntu.com/usn/USN-674-2
hplip-alertmailing-privilege-escalation(44441)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44441
https://bugzilla.redhat.com/show_bug.cgi?id=455235
oval:org.mitre.oval:def:10136
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10136
Common Vulnerability Exposure (CVE) ID: CVE-2008-2941
1020683
http://securitytracker.com/id?1020683
hplip-hpssd-dos(44440)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44440
https://bugzilla.redhat.com/show_bug.cgi?id=457052
oval:org.mitre.oval:def:10636
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10636
CopyrightCopyright (c) 2008 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.