![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.72201 |
Category: | Red Hat Local Security Checks |
Title: | RedHat Security Advisory RHSA-2012:1283 |
Summary: | NOSUMMARY |
Description: | Description: The remote host is missing updates announced in advisory RHSA-2012:1283. OpenJPEG is an open source library for reading and writing image files in JPEG 2000 format. It was found that OpenJPEG failed to sanity-check an image header field before using it. A remote attacker could provide a specially-crafted image file that could cause an application linked against OpenJPEG to crash or, possibly, execute arbitrary code. (CVE-2012-3535) This issue was discovered by Huzaifa Sidhpurwala of the Red Hat Security Response Team. Users of OpenJPEG should upgrade to these updated packages, which contain a patch to correct this issue. All running applications using OpenJPEG must be restarted for the update to take effect. Solution: Please note that this update is available via Red Hat Network. To use Red Hat Network, launch the Red Hat Update Agent with the following command: up2date http://rhn.redhat.com/errata/RHSA-2012-1283.html Risk factor : High |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2012-3535 50360 http://secunia.com/advisories/50360 50681 http://secunia.com/advisories/50681 55214 http://www.securityfocus.com/bid/55214 84978 http://osvdb.org/84978 FEDORA-2012-14664 http://lists.fedoraproject.org/pipermail/package-announce/2012-October/090021.html FEDORA-2012-14707 http://lists.fedoraproject.org/pipermail/package-announce/2012-October/090579.html MDVSA-2012:157 http://www.mandriva.com/security/advisories?name=MDVSA-2012:157 RHSA-2012:1283 http://rhn.redhat.com/errata/RHSA-2012-1283.html [oss-security] 20120827 CVE Request: Heap-based buffer overflow in openjpeg http://www.openwall.com/lists/oss-security/2012/08/27/2 [oss-security] 20120827 Re: CVE Request: Heap-based buffer overflow in openjpeg http://www.openwall.com/lists/oss-security/2012/08/27/3 http://code.google.com/p/openjpeg/issues/detail?id=170 https://bugzilla.redhat.com/show_bug.cgi?id=842918 openjpeg-files-bo(77994) https://exchange.xforce.ibmcloud.com/vulnerabilities/77994 |
Copyright | Copyright (c) 2012 E-Soft Inc. http://www.securityspace.com |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |