Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.71084
Category:Ubuntu Local Security Checks
Title:Ubuntu USN-1354-1 (libusbmuxd1)
Summary:NOSUMMARY
Description:Description:
The remote host is missing an update to libusbmuxd1
announced via advisory USN-1354-1.

Details:

It was discovered that usbmuxd did not correctly perform bounds checking
when processing the SerialNumber field of USB devices. An attacker with
physical access could use this to crash usbmuxd or potentially execute
arbitrary code as the 'usbmux' user.

Solution:
The problem can be corrected by updating your system to the following
package versions:

Ubuntu 11.10:
libusbmuxd1 1.0.7-1ubuntu0.11.10.1

Ubuntu 11.04:
libusbmuxd1 1.0.7-1ubuntu0.11.04.1

http://www.securityspace.com/smysecure/catid.html?in=USN-1354-1

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2012-0065
47545
http://secunia.com/advisories/47545
51573
http://www.securityfocus.com/bid/51573
MDVSA-2012:133
http://www.mandriva.com/security/advisories?name=MDVSA-2012:133
MDVSA-2013:133
http://www.mandriva.com/security/advisories?name=MDVSA-2013:133
[oss-security] 20120119 CVE request: usbmuxd 1.0.7 "receive_packet()" Buffer Overflow Vulnerability
http://openwall.com/lists/oss-security/2012/01/19/25
[oss-security] 20120119 Re: CVE request: usbmuxd 1.0.7 "receive_packet()" Buffer Overflow Vulnerability
http://openwall.com/lists/oss-security/2012/01/19/26
http://git.marcansoft.com/?p=usbmuxd.git%3Ba=commitdiff%3Bh=f794991993af56a74795891b4ff9da506bc893e6
https://bugs.gentoo.org/show_bug.cgi?id=399409
https://wiki.mageia.org/en/Support/Advisories/MGASA-2012-0228
usbmuxd-libusbmuxd-bo(72546)
https://exchange.xforce.ibmcloud.com/vulnerabilities/72546
CopyrightCopyright (c) 2012 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.