| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.67408 |
| Category: | FreeBSD Local Security Checks |
| Title: | FreeBSD Ports: ziproxy |
| Summary: | FreeBSD Ports: ziproxy |
| Description: | The remote host is missing an update to the system as announced in the referenced advisory. The following package is affected: ziproxy CVE-2010-1513 Multiple integer overflows in src/image.c in Ziproxy before 3.0.1 allow remote attackers to execute arbitrary code via (1) a large JPG image, related to the jpg2bitmap function or (2) a large PNG image, related to the png2bitmap function, leading to heap-based buffer overflows. Solution: Update your system with the appropriate patches or software upgrades. http://ziproxy.sourceforge.net/#news http://secunia.com/advisories/39941 http://sourceforge.net/mailarchive/message.php?msg_name=201005210019.37119.dancab%40gmx.net http://www.vuxml.org/freebsd/b43004b8-6a53-11df-bc7b-0245fb008c0b.html |
| Cross-Ref: |
BugTraq ID: 40344 Common Vulnerability Exposure (CVE) ID: CVE-2010-1513 Bugtraq: 20100524 Secunia Research: Ziproxy Two Integer Overflow Vulnerabilities (Google Search) http://www.securityfocus.com/archive/1/archive/1/511424/100/0/threaded http://secunia.com/secunia_research/2010-75/ http://secunia.com/advisories/39941 |
| Copyright | Copyright (c) 2010 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|