![]() |
Inicial ▼ Bookkeeping
Online ▼ Auditorias ▼
DNS
Administrado ▼
Acerca de DNS
Ordenar/Renovar
Preguntas Frecuentes
AUP
Dynamic DNS Clients
Configurar Dominios Dynamic DNS Update Password Monitoreo
de Redes ▼
Enterprise
Avanzado
Estándarr
Prueba
Preguntas Frecuentes
Resumen de Precio/Funciones
Ordenar
Muestras
Configure/Status Alert Profiles | ||
ID de Prueba: | 1.3.6.1.4.1.25623.1.1.10.2017.0170 |
Categoría: | Mageia Linux Local Security Checks |
Título: | Mageia: Security Advisory (MGASA-2017-0170) |
Resumen: | The remote host is missing an update for the 'exosip, libosip2, siproxd' package(s) announced via the MGASA-2017-0170 advisory. |
Descripción: | Summary: The remote host is missing an update for the 'exosip, libosip2, siproxd' package(s) announced via the MGASA-2017-0170 advisory. Vulnerability Insight: In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the osip_clrncpy() function defined in osipparser2/osip_port.c (CVE-2016-10324). In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the _osip_message_to_str() function defined in osipparser2/osip_message_to_str.c, resulting in a remote DoS (CVE-2016-10325). In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the osip_body_to_str() function defined in osipparser2/osip_body.c, resulting in a remote DoS (CVE-2016-10326). In libosip2 in GNU 5.0.0, a malformed SIP message can lead to a heap buffer overflow in the msg_osip_body_parse() function defined in osipparser2/osip_message_parse.c, resulting in a remote DoS (CVE-2017-7853). Affected Software/OS: 'exosip, libosip2, siproxd' package(s) on Mageia 5. Solution: Please install the updated package(s). CVSS Score: 7.5 CVSS Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P |
Referencia Cruzada: |
Common Vulnerability Exposure (CVE) ID: CVE-2016-10324 BugTraq ID: 97641 http://www.securityfocus.com/bid/97641 Debian Security Information: DSA-3879 (Google Search) http://www.debian.org/security/2017/dsa-3879 Common Vulnerability Exposure (CVE) ID: CVE-2016-10325 BugTraq ID: 92921 http://www.securityfocus.com/bid/92921 Common Vulnerability Exposure (CVE) ID: CVE-2016-10326 Common Vulnerability Exposure (CVE) ID: CVE-2017-7853 BugTraq ID: 97644 http://www.securityfocus.com/bid/97644 |
Copyright | Copyright (C) 2022 Greenbone AG |
Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |