Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.54332
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2005:114 (leafnode)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to leafnode
announced via advisory MDKSA-2005:114.

A number of vulnerabilities in the leafnode NNTP server package have
been found:

A vulnerability in the fetchnews program that could under some
circumstances cause a wait for input that never arrives, which in
turn would cause fetchnews to hang (CVE-2004-2068).

Two vulnerabilities in the fetchnews program can cause fetchnews to
crash when the upstream server closes the connection and leafnode is
receiving an article header or an article body, which prevent leafnode
from querying other servers that are listed after that particular
server in the configuration file (CVE-2005-1453).

Finally, another vulnerability in the fetchnews program could also
cuase a wait for input that never arrives, causing fetchnews to
hang (CVE-2005-1911).

The updated packages have been patched to correct this problem.

Affected versions: 10.1, 10.2, Corporate 3.0

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2005:114

Risk factor : Medium

CVSS Score:
5.0

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2004-2068
http://www.osvdb.org/3441
http://secunia.com/advisories/10590
http://www.derkeiler.com/Mailing-Lists/VulnWatch/2004-01/0009.html
XForce ISS Database: leafnode-fetchnews-nntp-dos(14189)
https://exchange.xforce.ibmcloud.com/vulnerabilities/14189
Common Vulnerability Exposure (CVE) ID: CVE-2005-1453
http://secunia.com/advisories/15252
http://archives.neohapsis.com/archives/vulnwatch/2005-q2/0037.html
http://www.vupen.com/english/advisories/2005/0468
Common Vulnerability Exposure (CVE) ID: CVE-2005-1911
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.