|Category:||Mandrake Local Security Checks|
|Title:||Mandrake Security Advisory MDKSA-2005:118 (ruby)|
|Summary:||Mandrake Security Advisory MDKSA-2005:118 (ruby)|
The remote host is missing an update to ruby
announced via advisory MDKSA-2005:118.
A vulnerability was discovered in ruby version 1.8 that could allow for
the execution of arbitrary commands on a server running the ruby xmlrpc
The updated packages have been patched to address this issue.
Affected versions: 10.1, 10.2, Corporate 3.0
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.
Risk factor : High
Common Vulnerability Exposure (CVE) ID: CVE-2005-1992|
Debian Security Information: DSA-748 (Google Search)
SuSE Security Announcement: SUSE-SR:2005:018 (Google Search)
AUSCERT Advisory: ESB-2005.0732
CERT/CC vulnerability note: VU#684913
Computer Incident Advisory Center Bulletin: P-312
BugTraq ID: 14016
|Copyright||Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com|
|This is only one of 40037 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.