Startseite ▼ Bookkeeping
Online ▼ Sicherheits
Überprüfungs ▼
Verwaltetes
DNS ▼
Info
Bestellen/Erneuern
FAQ
AUP
Dynamic DNS Clients
Domaine konfigurieren Dyanmic DNS Update Password Netzwerk
Überwachung ▼
Enterprise
Erweiterte
Standard
Gratis Test
FAQ
Preis/Funktionszusammenfassung
Bestellen
Beispiele
Konfigurieren/Status Alarm Profile | |||
Test Kennung: | 1.3.6.1.4.1.25623.1.0.69595 |
Kategorie: | FreeBSD Local Security Checks |
Titel: | FreeBSD Ports: krb5 |
Zusammenfassung: | The remote host is missing an update to the system; as announced in the referenced advisory. |
Beschreibung: | Summary: The remote host is missing an update to the system as announced in the referenced advisory. Vulnerability Insight: The following package is affected: krb5 CVE-2011-0285 The process_chpw_request function in schpw.c in the password-changing functionality in kadmind in MIT Kerberos 5 (aka krb5) 1.7 through 1.9 frees an invalid pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted request that triggers an error condition. Solution: Update your system with the appropriate patches or software upgrades. CVSS Score: 10.0 CVSS Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C |
Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2011-0285 BugTraq ID: 47310 http://www.securityfocus.com/bid/47310 Bugtraq: 20110413 MITKRB5-SA-2011-004 kadmind invalid pointer free() [CVE-2011-0285] (Google Search) http://www.securityfocus.com/archive/1/517484/100/0/threaded http://lists.fedoraproject.org/pipermail/package-announce/2011-April/058181.html http://www.mandriva.com/security/advisories?name=MDVSA-2011:077 http://osvdb.org/71789 http://www.redhat.com/support/errata/RHSA-2011-0447.html http://www.securitytracker.com/id?1025320 http://secunia.com/advisories/44125 http://secunia.com/advisories/44181 http://secunia.com/advisories/44196 http://securityreason.com/securityalert/8200 SuSE Security Announcement: openSUSE-SU-2011:0348 (Google Search) https://hermes.opensuse.org/messages/8086843 http://www.vupen.com/english/advisories/2011/0936 http://www.vupen.com/english/advisories/2011/0986 http://www.vupen.com/english/advisories/2011/0997 |
Copyright | Copyright (c) 2011 E-Soft Inc. http://www.securityspace.com |
Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |