Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.881768
Kategorie:CentOS Local Security Checks
Titel:CentOS Update for bind97 CESA-2013:1115 centos5
Zusammenfassung:The remote host is missing an update for the 'bind97'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'bind97'
package(s) announced via the referenced advisory.

Vulnerability Insight:
The Berkeley Internet Name Domain (BIND) is an implementation of the
Domain Name System (DNS) protocols. BIND includes a DNS server (named) a
resolver library (routines for applications to use when interfacing with
DNS) and tools for verifying that the DNS server is operating correctly.

A denial of service flaw was found in BIND. A remote attacker could use
this flaw to send a specially-crafted DNS query to named that, when
processed, would cause named to crash when rejecting the malformed query.
(CVE-2013-4854)

All bind97 users are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. After installing the
update, the BIND daemon (named) will be restarted automatically.

Affected Software/OS:
bind97 on CentOS 5

Solution:
Please install the updated packages.

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2013-4854
http://archives.neohapsis.com/archives/bugtraq/2014-10/0103.html
BugTraq ID: 61479
http://www.securityfocus.com/bid/61479
Bugtraq: 20130806 [slackware-security] bind (SSA:2013-218-01) (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2013-08/0030.html
Debian Security Information: DSA-2728 (Google Search)
http://www.debian.org/security/2013/dsa-2728
http://lists.fedoraproject.org/pipermail/package-announce/2013-August/113251.html
http://lists.fedoraproject.org/pipermail/package-announce/2013-August/113108.html
FreeBSD Security Advisory: FreeBSD-SA-13:07
http://www.freebsd.org/security/advisories/FreeBSD-SA-13:07.bind.asc
HPdes Security Advisory: HPSBUX02926
https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03922396
HPdes Security Advisory: SSRT101281
http://www.mandriva.com/security/advisories?name=MDVSA-2013:202
http://www.zerodayinitiative.com/advisories/ZDI-13-210/
https://kc.mcafee.com/corporate/index?page=content&id=SB10052
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19561
RedHat Security Advisories: RHSA-2013:1114
http://rhn.redhat.com/errata/RHSA-2013-1114.html
RedHat Security Advisories: RHSA-2013:1115
http://rhn.redhat.com/errata/RHSA-2013-1115.html
http://www.securitytracker.com/id/1028838
http://secunia.com/advisories/54134
http://secunia.com/advisories/54185
http://secunia.com/advisories/54207
http://secunia.com/advisories/54211
http://secunia.com/advisories/54323
http://secunia.com/advisories/54432
SuSE Security Announcement: SUSE-SU-2013:1310 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00004.html
SuSE Security Announcement: openSUSE-SU-2013:1354 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00018.html
http://www.ubuntu.com/usn/USN-1910-1
XForce ISS Database: isc-bind-cve20134854-dos(86004)
https://exchange.xforce.ibmcloud.com/vulnerabilities/86004
CopyrightCopyright (c) 2013 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.