Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2014.0306
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2014-0306)
Resumen:The remote host is missing an update for the 'gcc' package(s) announced via the MGASA-2014-0306 advisory.
Descripción:Summary:
The remote host is missing an update for the 'gcc' package(s) announced via the MGASA-2014-0306 advisory.

Vulnerability Insight:
Updated gcc packages fix the following security issue:
Multiple integer overflow issues were found in libgfortran, the run-time
support library for the Fortran compiler. These could possibly be used to
crash a Fortran application or cause it to execute arbitrary code.
(CVE-2014-5044)

They also fix the following bugs:
The gcc rtl-optimization sched2 miscompiles syscall sequence which can
cause random panic in glibc and kernel (gcc/PR61801)

clang++ fails to find cxxabi.h and cxxabi_tweaks.h during build (mga#13543)

Affected Software/OS:
'gcc' package(s) on Mageia 3, Mageia 4.

Solution:
Please install the updated package(s).

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2014-5044
[oss-security] 20140723 Re: [CVE request] Array allocation fixes in libgfortran
http://www.openwall.com/lists/oss-security/2014/07/24/1
[oss-security] 20140731 Re: Re: [CVE request] Array allocation fixes in libgfortran
http://www.openwall.com/lists/oss-security/2014/07/31/6
https://bugzilla.redhat.com/show_bug.cgi?id=1122812
https://gcc.gnu.org/viewcvs/gcc/trunk/libgfortran/ChangeLog?limit_changes=0&view=markup&pathrev=211721
libgfortran-cve20145044-overflow(94849)
https://exchange.xforce.ibmcloud.com/vulnerabilities/94849
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.