Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2015.0189
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2015-0189)
Resumen:The remote host is missing an update for the 'pdns, pdns-recursor' package(s) announced via the MGASA-2015-0189 advisory.
Descripción:Summary:
The remote host is missing an update for the 'pdns, pdns-recursor' package(s) announced via the MGASA-2015-0189 advisory.

Vulnerability Insight:
Updated pdns and pdns-recursor packages fix security vulnerability:

A bug was discovered in the label decompression code in PowerDNS and PowerDNS
Recursor, making it possible for names to refer to themselves, thus causing a
loop during decompression. On some platforms, this bug can be abused to cause
crashes. On all platforms, this bug can be abused to cause service-affecting
CPU spikes (CVE-2015-1868).

The pdns package has been updated to version 3.3.2 and the pdns-recursor
package has been updated to version 3.6.3 to fix this issue and other bugs.

Affected Software/OS:
'pdns, pdns-recursor' package(s) on Mageia 4.

Solution:
Please install the updated package(s).

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2015-1868
BugTraq ID: 74306
http://www.securityfocus.com/bid/74306
Debian Security Information: DSA-3306 (Google Search)
http://www.debian.org/security/2015/dsa-3306
Debian Security Information: DSA-3307 (Google Search)
http://www.debian.org/security/2015/dsa-3307
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/156743.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/156725.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/156655.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/156680.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/156667.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/156648.html
http://www.securitytracker.com/id/1032220
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.