Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.703220
Kategorie:Debian Local Security Checks
Titel:Debian Security Advisory DSA 3220-1 (libtasn1-3 - security update)
Zusammenfassung:Hanno Boeck discovered a stack-based;buffer overflow in the asn1_der_decoding function in Libtasn1, a library to manage;ASN.1 structures. A remote attacker could take advantage of this flaw to cause;an application using the Libtasn1 library to crash, or potentially to;execute arbitrary code.
Beschreibung:Summary:
Hanno Boeck discovered a stack-based
buffer overflow in the asn1_der_decoding function in Libtasn1, a library to manage
ASN.1 structures. A remote attacker could take advantage of this flaw to cause
an application using the Libtasn1 library to crash, or potentially to
execute arbitrary code.

Affected Software/OS:
libtasn1-3 on Debian Linux

Solution:
For the stable distribution (wheezy),
this problem has been fixed in version 2.13-2+deb7u2.

We recommend that you upgrade your libtasn1-3 packages.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2015-2806
BugTraq ID: 73436
http://www.securityfocus.com/bid/73436
Debian Security Information: DSA-3220 (Google Search)
http://www.debian.org/security/2015/dsa-3220
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/154805.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/154741.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/155270.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/155483.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/155117.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/155435.html
https://security.gentoo.org/glsa/201509-04
http://www.mandriva.com/security/advisories?name=MDVSA-2015:193
http://www.openwall.com/lists/oss-security/2015/03/29/4
http://www.openwall.com/lists/oss-security/2015/03/31/2
RedHat Security Advisories: RHSA-2017:1860
https://access.redhat.com/errata/RHSA-2017:1860
http://www.securitytracker.com/id/1032080
http://www.ubuntu.com/usn/USN-2559-1
CopyrightCopyright (c) 2015 Greenbone Networks GmbH http://greenbone.net

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.