|Category:||Red Hat Local Security Checks|
|Title:||RedHat Security Advisory RHSA-2007:0208|
The remote host is missing updates announced in
w3c-libwww is a general-purpose web library.
Several buffer overflow flaws in w3c-libwww were found. If a client
application that uses w3c-libwww connected to a malicious HTTP server, it
could trigger an out of bounds memory access, causing the client
application to crash (CVE-2005-3183).
This updated version of w3c-libwww also fixes an issue when computing MD5
sums on a 64 bit machine.
Users of w3c-libwww should upgrade to these updated packages, which contain
backported patches to correct these issues.
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date
Risk factor : Medium
Common Vulnerability Exposure (CVE) ID: CVE-2005-3183|
BugTraq ID: 15035
SCO Security Bulletin: SCOSA-2006.10
|Copyright||Copyright (c) 2007 E-Soft Inc. http://www.securityspace.com|
|This is only one of 97459 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.