Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.882554
Categoría:CentOS Local Security Checks
Título:CentOS Update for ipa-admintools CESA-2016:1797 centos7
Resumen:Check the version of ipa-admintools
Descripción:Summary:
Check the version of ipa-admintools

Vulnerability Insight:
Red Hat Identity Management (IdM) is a
centralized authentication, identity management, and authorization solution for
both traditional and cloud-based enterprise environments.

Security Fix(es):

* An insufficient permission check issue was found in the way IPA server
treats certificate revocation requests. An attacker logged in with the
'retrieve certificate' permission enabled could use this flaw to revoke
certificates, possibly triggering a denial of service attack.
(CVE-2016-5404)

This issue was discovered by Fraser Tweedale (Red Hat).

Affected Software/OS:
ipa-admintools on CentOS 7

Solution:
Please install the updated packages.

CVSS Score:
4.0

CVSS Vector:
AV:N/AC:L/Au:S/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2016-5404
92525
http://www.securityfocus.com/bid/92525
FEDORA-2016-7898627d08
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VQDYWANTMDFZP3HTGSEOA2IONVUITYX5/
FEDORA-2016-92a3655b70
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3PZ2ZQTMGC2UBRNHXVVOY3PJDOBP4CP4/
FEDORA-2016-f56c765d67
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/S5OROLKFSY5QRQS7NGBNDP5QMOBV3XMZ/
RHSA-2016:1797
http://rhn.redhat.com/errata/RHSA-2016-1797.html
[oss-security] 20160817 CVE-2016-5404 freeipa: Insufficient privileges check in certificate revocation
http://www.openwall.com/lists/oss-security/2016/08/17/9
http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
https://fedorahosted.org/freeipa/ticket/6232
https://git.fedorahosted.org/cgit/freeipa.git/commit/?id=cf74584d0f772f3f5eccc1d30c001e4212a104fd
CopyrightCopyright (C) 2016 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.