![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.53184 |
Category: | Debian Local Security Checks |
Title: | Debian: Security Advisory (DSA-492) |
Summary: | The remote host is missing an update for the Debian 'iproute' package(s) announced via the DSA-492 advisory. |
Description: | Summary: The remote host is missing an update for the Debian 'iproute' package(s) announced via the DSA-492 advisory. Vulnerability Insight: Herbert Xu reported that local users could cause a denial of service against iproute, a set of tools for controlling networking in Linux kernels. iproute uses the netlink interface to communicate with the kernel, but failed to verify that the messages it received came from the kernel (rather than from other user processes). For the current stable distribution (woody) this problem has been fixed in version 20010824-8woody1. For the unstable distribution (sid), this problem will be fixed soon. We recommend that you update your iproute package. Affected Software/OS: 'iproute' package(s) on Debian 3.0. Solution: Please install the updated package(s). CVSS Score: 4.9 CVSS Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2003-0856 Debian Security Information: DSA-492 (Google Search) http://www.debian.org/security/2004/dsa-492 http://www.redhat.com/archives/fedora-announce-list/2004-May/msg00004.html https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10912 http://www.redhat.com/support/errata/RHSA-2003-316.html http://www.redhat.com/support/errata/RHSA-2003-317.html SuSE Security Announcement: SUSE-SR:2005:001 (Google Search) http://www.novell.com/linux/security/advisories/2005_01_sr.html |
Copyright | Copyright (C) 2008 Greenbone AG |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |