![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.50730 |
Category: | Mandrake Local Security Checks |
Title: | Mandrake Security Advisory MDKSA-2003:072 (ypserv) |
Summary: | NOSUMMARY |
Description: | Description: The remote host is missing an update to ypserv announced via advisory MDKSA-2003:072. A vulnerability was found in versions of ypserv prior to version 2.7. If a malicious client were to query ypserv via TCP and subsequently ignore the server's response, ypserv will block attempting to send the reply. The result is that ypserv will fail to respond to other client requests. ypserv 2.7 and above have been altered to fork a child for each client request, which prevents any one request from causing the server to block. Affected versions: 8.2, 9.0, Corporate Server 2.1 Solution: To upgrade automatically use MandrakeUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2003:072 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0251 http://www.linux-nis.org/nis/ypserv/ChangeLog Risk factor : Medium CVSS Score: 5.0 |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2003-0251 BugTraq ID: 8031 http://www.securityfocus.com/bid/8031 HPdes Security Advisory: HPSBTU02132 http://www.securityfocus.com/archive/1/440454/100/0/threaded HPdes Security Advisory: SSRT061154 http://www.mandriva.com/security/advisories?name=MDKSA-2003:072 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A667 http://www.redhat.com/support/errata/RHSA-2003-173.html http://www.redhat.com/support/errata/RHSA-2003-201.html http://securitytracker.com/id?1016517 http://secunia.com/advisories/21112 http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert%2F55600&zone_32=category%3Asecurity TurboLinux Advisory: TLSA-2003-43 http://www.turbolinux.com/security/TLSA-2003-43.txt http://www.vupen.com/english/advisories/2006/2873 |
Copyright | Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |