Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.880875
Categoría:CentOS Local Security Checks
Título:CentOS Update for cscope CESA-2009:1102 centos5 i386
Resumen:The remote host is missing an update for the 'cscope'; package(s) announced via the referenced advisory.
Descripción:Summary:
The remote host is missing an update for the 'cscope'
package(s) announced via the referenced advisory.

Vulnerability Insight:
cscope is a mature, ncurses-based, C source-code tree browsing tool.

Multiple buffer overflow flaws were found in cscope. An attacker could
create a specially crafted source code file that could cause cscope to
crash or, possibly, execute arbitrary code when browsed with cscope.
(CVE-2004-2541, CVE-2009-0148)

All users of cscope are advised to upgrade to this updated package, which
contains backported patches to fix these issues. All running instances of
cscope must be restarted for this update to take effect.

Affected Software/OS:
cscope on CentOS 5

Solution:
Please install the updated packages.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2004-2541
http://lists.apple.com/archives/security-announce//2007/Jul/msg00004.html
BugTraq ID: 18050
http://www.securityfocus.com/bid/18050
BugTraq ID: 25159
http://www.securityfocus.com/bid/25159
Debian Security Information: DSA-1064 (Google Search)
http://www.debian.org/security/2006/dsa-1064
http://www.gentoo.org/security/en/glsa/glsa-200606-10.xml
http://sourceforge.net/tracker/index.php?func=detail&aid=1064875&group_id=4664&atid=104664
http://www.osvdb.org/11920
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10069
http://www.redhat.com/support/errata/RHSA-2009-1101.html
http://www.redhat.com/support/errata/RHSA-2009-1102.html
http://secunia.com/advisories/13237
http://secunia.com/advisories/20191
http://secunia.com/advisories/20564
http://secunia.com/advisories/26235
http://secunia.com/advisories/35462
http://www.vupen.com/english/advisories/2007/2732
Common Vulnerability Exposure (CVE) ID: CVE-2009-0148
http://lists.apple.com/archives/security-announce/2009/May/msg00002.html
BugTraq ID: 34805
http://www.securityfocus.com/bid/34805
Cert/CC Advisory: TA09-133A
http://www.us-cert.gov/cas/techalerts/TA09-133A.html
Debian Security Information: DSA-1806 (Google Search)
http://www.debian.org/security/2009/dsa-1806
http://security.gentoo.org/glsa/glsa-200905-02.xml
http://sourceforge.net/mailarchive/forum.php?thread_name=E1LsGx3-00015K-TN%40ddv4jf1.ch3.sourceforge.com&forum_name=cscope-cvs
http://www.openwall.com/lists/oss-security/2009/05/06/9
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9633
http://www.securitytracker.com/id?1022218
http://secunia.com/advisories/34978
http://secunia.com/advisories/35074
http://secunia.com/advisories/35213
http://secunia.com/advisories/35214
http://www.vupen.com/english/advisories/2009/1238
http://www.vupen.com/english/advisories/2009/1297
CopyrightCopyright (C) 2011 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.