![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.65922 |
Category: | SuSE Local Security Checks |
Title: | SLES10: Security update for PHP5 |
Summary: | The remote host is missing updates to packages that affect;the security of your system. One or more of the following packages;are affected:;; apache2-mod_php5; php5; php5-bcmath; php5-bz2; php5-calendar; php5-ctype; php5-curl; php5-dba; php5-dbase; php5-devel; php5-dom; php5-exif; php5-fastcgi; php5-ftp; php5-gd; php5-gettext; php5-gmp; php5-iconv; php5-imap; php5-json; php5-ldap; php5-mbstring; php5-mcrypt; php5-mhash; php5-mysql; php5-ncurses; php5-odbc; php5-openssl; php5-pcntl; php5-pdo; php5-pear; php5-pgsql; php5-posix; php5-pspell; php5-shmop; php5-snmp; php5-soap; php5-sockets; php5-sqlite; php5-suhosin; php5-sysvmsg; php5-sysvsem; php5-sysvshm; php5-tokenizer; php5-wddx; php5-xmlreader; php5-xmlrpc; php5-xsl; php5-zlib;;;More details may also be found by searching for the SuSE;Enterprise Server 10 patch database linked in the references. |
Description: | Summary: The remote host is missing updates to packages that affect the security of your system. One or more of the following packages are affected: apache2-mod_php5 php5 php5-bcmath php5-bz2 php5-calendar php5-ctype php5-curl php5-dba php5-dbase php5-devel php5-dom php5-exif php5-fastcgi php5-ftp php5-gd php5-gettext php5-gmp php5-iconv php5-imap php5-json php5-ldap php5-mbstring php5-mcrypt php5-mhash php5-mysql php5-ncurses php5-odbc php5-openssl php5-pcntl php5-pdo php5-pear php5-pgsql php5-posix php5-pspell php5-shmop php5-snmp php5-soap php5-sockets php5-sqlite php5-suhosin php5-sysvmsg php5-sysvsem php5-sysvshm php5-tokenizer php5-wddx php5-xmlreader php5-xmlrpc php5-xsl php5-zlib More details may also be found by searching for the SuSE Enterprise Server 10 patch database linked in the references. Solution: Please install the updates provided by SuSE. CVSS Score: 10.0 CVSS Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2008-0599 http://lists.apple.com/archives/security-announce//2008/Jul/msg00003.html BugTraq ID: 29009 http://www.securityfocus.com/bid/29009 Bugtraq: 20080523 rPSA-2008-0176-1 php php-cgi php-imap php-mcrypt php-mysql php-mysqli php-pgsql php-soap php-xsl php5 php5-cgi php5-imap php5-mcrypt php5-mysql php5-mysqli php5-pear php5-pgsql php5-soap php5-xsl (Google Search) http://www.securityfocus.com/archive/1/492535/100/0/threaded CERT/CC vulnerability note: VU#147027 http://www.kb.cert.org/vuls/id/147027 https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00779.html https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00773.html http://security.gentoo.org/glsa/glsa-200811-05.xml HPdes Security Advisory: HPSBUX02342 http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01476437 HPdes Security Advisory: HPSBUX02431 http://marc.info/?l=bugtraq&m=124654546101607&w=2 HPdes Security Advisory: HPSBUX02465 http://marc.info/?l=bugtraq&m=125631037611762&w=2 HPdes Security Advisory: SSRT080063 HPdes Security Advisory: SSRT090085 HPdes Security Advisory: SSRT090192 http://www.mandriva.com/security/advisories?name=MDVSA-2008:127 http://www.mandriva.com/security/advisories?name=MDVSA-2008:128 http://www.openwall.com/lists/oss-security/2008/05/02/2 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5510 http://www.redhat.com/support/errata/RHSA-2008-0505.html http://www.securitytracker.com/id?1019958 http://secunia.com/advisories/30048 http://secunia.com/advisories/30083 http://secunia.com/advisories/30345 http://secunia.com/advisories/30616 http://secunia.com/advisories/30757 http://secunia.com/advisories/30828 http://secunia.com/advisories/31200 http://secunia.com/advisories/31326 http://secunia.com/advisories/32746 http://secunia.com/advisories/35650 http://www.slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.488951 http://www.ubuntu.com/usn/usn-628-1 http://www.vupen.com/english/advisories/2008/1412 http://www.vupen.com/english/advisories/2008/1810/references http://www.vupen.com/english/advisories/2008/2268 XForce ISS Database: php-vector-unspecified(42137) https://exchange.xforce.ibmcloud.com/vulnerabilities/42137 |
Copyright | Copyright (C) 2009 E-Soft Inc. |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |