Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2019.0296
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2019-0296)
Resumen:The remote host is missing an update for the 'e2fsprogs' package(s) announced via the MGASA-2019-0296 advisory.
Descripción:Summary:
The remote host is missing an update for the 'e2fsprogs' package(s) announced via the MGASA-2019-0296 advisory.

Vulnerability Insight:
Updated e2fsprogs packages fix security vulnerability:

Lilith of Cisco Talos discovered a buffer overflow flaw in the quota code
used by e2fsck from the ext2/ext3/ext4 file system utilities. Running
e2fsck on a malformed file system can result in the execution of arbitrary
code (CVE-2019-5094).

The e2fsprogs package has been updated to version 1.45.4, fixing this issue
and other bugs. See the upstream release notes for details.

Affected Software/OS:
'e2fsprogs' package(s) on Mageia 7.

Solution:
Please install the updated package(s).

CVSS Score:
4.6

CVSS Vector:
AV:L/AC:L/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2019-5094
Bugtraq: 20190929 [SECURITY] [DSA 4535-1] e2fsprogs security update (Google Search)
https://seclists.org/bugtraq/2019/Sep/58
https://security.netapp.com/advisory/ntap-20200115-0002/
Debian Security Information: DSA-4535 (Google Search)
https://www.debian.org/security/2019/dsa-4535
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6DOBCYQKCTTWXBLMUPJ5TX3FY7JNCOKY/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2AKETJ6BREDUHRWQTV35SPGG5C6H7KSI/
https://security.gentoo.org/glsa/202003-05
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0887
https://lists.debian.org/debian-lts-announce/2019/09/msg00029.html
https://usn.ubuntu.com/4142-1/
https://usn.ubuntu.com/4142-2/
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.