Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.70850
Category:Ubuntu Local Security Checks
Title:Ubuntu USN-1137-1 (eucalyptus-cloud)
Summary:NOSUMMARY
Description:Description:
The remote host is missing an update to eucalyptus-cloud
announced via advisory USN-1137-1.

Details:

Juraj Somorovsky, Jorg Schwenk, Meiko Jensen and Xiaofeng Lou discovered
that Eucalyptus did not properly validate SOAP requests. An unauthenticated
remote attacker could exploit this to submit arbitrary commands to the
Eucalyptus SOAP interface in the context of an authenticated user.

Solution:
The problem can be corrected by updating your system to the following
package versions:

Ubuntu 11.04:
eucalyptus-cloud 2.0.1+bzr1256-0ubuntu4.1
librampart0 1.3.0-1ubuntu2.1

Ubuntu 10.10:
eucalyptus-cloud 2.0+bzr1241-0ubuntu4.2
librampart0 1.3.0-1ubuntu1.1

Ubuntu 10.04 LTS:
eucalyptus-cloud 1.6.2-0ubuntu30.5
librampart0 1.3.0-0ubuntu7.1

http://www.securityspace.com/smysecure/catid.html?in=USN-1137-1

CVSS Score:
6.5

CVSS Vector:
AV:L/AC:L/Au:R/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2011-0730
BugTraq ID: 48000
http://www.securityfocus.com/bid/48000
http://secunia.com/advisories/44705
http://www.ubuntu.com/usn/USN-1137-1
XForce ISS Database: eucalyptus-soap-command-execution(67670)
https://exchange.xforce.ibmcloud.com/vulnerabilities/67670
CopyrightCopyright (c) 2012 E-Soft Inc. http://www.securityspace.com

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.