![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.52707 |
Category: | Red Hat Local Security Checks |
Title: | RedHat Security Advisory RHSA-2005:408 |
Summary: | NOSUMMARY |
Description: | Description: The remote host is missing updates announced in advisory RHSA-2005:408. The cyrus-imapd package contains the core of the Cyrus IMAP server. Several buffer overflow bugs were found in cyrus-imapd. It is possible that an authenticated malicious user could cause the imap server to crash. Additionally, a peer news admin could potentially execute arbitrary code on the imap server when news is received using the fetchnews command. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2005-0546 to this issue. Users of cyrus-imapd are advised to upgrade to these updated packages, which contain cyrus-imapd version 2.2.12 to correct these issues. Solution: Please note that this update is available via Red Hat Network. To use Red Hat Network, launch the Red Hat Update Agent with the following command: up2date http://rhn.redhat.com/errata/RHSA-2005-408.html Risk factor : High CVSS Score: 7.5 |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2005-0546 BugTraq ID: 12636 http://www.securityfocus.com/bid/12636 Bugtraq: 20050228 [USN-87-1] Cyrus IMAP server vulnerability (Google Search) http://marc.info/?l=bugtraq&m=110972236203397&w=2 Conectiva Linux advisory: CLA-2005:937 http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000937 http://www.securityfocus.com/archive/1/430294/100/0/threaded http://security.gentoo.org/glsa/glsa-200502-29.xml http://www.mandriva.com/security/advisories?name=MDKSA-2005:051 http://asg.web.cmu.edu/archive/message.php?mailbox=archive.info-cyrus&msg=33723 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10674 http://www.redhat.com/support/errata/RHSA-2005-408.html http://securitytracker.com/id?1013278 http://secunia.com/advisories/14383 |
Copyright | Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |