Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.54049
Category:SuSE Local Security Checks
Title:SuSE Security Advisory SUSE-SA:2004:029 (zlib)
Summary:NOSUMMARY
Description:Description:

The remote host is missing updates announced in
advisory SUSE-SA:2004:029.

zlib is a widely used data compression library. Programs linked against it
include most desktop applications as well as servers such as Apache and
OpenSSH.

The 'inflate' function of zlib handles certain input data
incorrectly which could lead to a denial of service condition for
programs using it with untrusted data. Whether the vulnerability
can be exploided locally or remotely depends on the application
using it.

zlib versions older than version 1.2 are not affected.

Solution:
Update your system with the packages as indicated in
the referenced security advisory.

http://www.securityspace.com/smysecure/catid.html?in=SUSE-SA:2004:029

Risk factor : Medium

CVSS Score:
2.1

Cross-Ref: BugTraq ID: 11051
Common Vulnerability Exposure (CVE) ID: CVE-2004-0797
http://www.securityfocus.com/bid/11051
Bugtraq: 20040825 [OpenPKG-SA-2004.038] OpenPKG Security Advisory (zlib) (Google Search)
http://marc.info/?l=bugtraq&m=109353792914900&w=2
CERT/CC vulnerability note: VU#238678
http://www.kb.cert.org/vuls/id/238678
Conectiva Linux advisory: CLA-2004:865
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000865
Conectiva Linux advisory: CLA-2004:878
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000878
https://bugzilla.fedora.us/show_bug.cgi?id=2043
http://security.gentoo.org/glsa/glsa-200408-26.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2004:090
OpenBSD Security Advisory: 20040829 017: RELIABILITY FIX: August 29, 2004
http://www.osvdb.org/9360
http://www.osvdb.org/9361
SCO Security Bulletin: SCOSA-2004.17
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2004.17/SCOSA-2004.17.txt
SCO Security Bulletin: SCOSA-2006.6
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.6/SCOSA-2006.6.txt
http://securitytracker.com/id?1011085
http://secunia.com/advisories/11129
http://secunia.com/advisories/17054
http://secunia.com/advisories/18377
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.319160
SuSE Security Announcement: SUSE-SA:2004:029 (Google Search)
http://www.novell.com/linux/security/advisories/2004_29_zlib.html
XForce ISS Database: zlib-inflate-inflateback-dos(17119)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17119
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.