Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.891845
Kategorie:Debian Local Security Checks
Titel:Debian LTS: Security Advisory for dosbox (DLA-1845-1)
Zusammenfassung:The remote host is missing an update for the 'dosbox'; package(s) announced via the DLA-1845-1 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'dosbox'
package(s) announced via the DLA-1845-1 advisory.

Vulnerability Insight:
Several security vulnerabilities were discovered in DOSBox, an
emulator for running old DOS programs.

CVE-2019-7165

A very long line inside a bat file would overflow the parsing buffer
which could be used by an attacker to execute arbitrary code.

CVE-2019-12594

Insufficient access controls inside DOSBox allowed attackers to
access resources on the host system and execute arbitrary code.

Affected Software/OS:
'dosbox' package(s) on Debian Linux.

Solution:
For Debian 8 'Jessie', these problems have been fixed in version
0.74-4+deb8u1.

We recommend that you upgrade your dosbox packages.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2019-7165
Bugtraq: 20190712 [SECURITY] [DSA 4478-1] dosbox security update (Google Search)
https://seclists.org/bugtraq/2019/Jul/14
Debian Security Information: DSA-4478 (Google Search)
https://www.debian.org/security/2019/dsa-4478
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PYV27Z3QZTDHUZJLW3LDJYO7HBVIMJ5F/
https://security-tracker.debian.org/tracker/CVE-2019-7165
https://lists.debian.org/debian-lts-announce/2019/07/msg00004.html
SuSE Security Announcement: openSUSE-SU-2019:1905 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00047.html
SuSE Security Announcement: openSUSE-SU-2019:1920 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00053.html
CopyrightCopyright (C) 2019 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.