Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.56414
Categoría:Gentoo Local Security Checks
Título:Gentoo Security Advisory GLSA 200603-06 (tar)
Resumen:NOSUMMARY
Descripción:Description:
The remote host is missing updates announced in
advisory GLSA 200603-06.

A malicious tar archive could trigger a Buffer overflow in GNU tar,
potentially resulting in the execution of arbitrary code.

Solution:
All GNU tar users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose '>=app-arch/tar-1.15.1-r1'

http://www.securityspace.com/smysecure/catid.html?in=GLSA%20200603-06
http://bugs.gentoo.org/show_bug.cgi?id=123038

CVSS Score:
5.1

CVSS Vector:
AV:N/AC:H/Au:N/C:P/I:P/A:P

Referencia Cruzada: BugTraq ID: 16764
Common Vulnerability Exposure (CVE) ID: CVE-2006-0300
http://lists.apple.com/archives/security-announce/2007/Mar/msg00002.html
http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html
http://www.securityfocus.com/bid/16764
Cert/CC Advisory: TA07-072A
http://www.us-cert.gov/cas/techalerts/TA07-072A.html
Cert/CC Advisory: TA07-109A
http://www.us-cert.gov/cas/techalerts/TA07-109A.html
Debian Security Information: DSA-987 (Google Search)
http://www.debian.org/security/2006/dsa-987
http://www.securityfocus.com/archive/1/430299/100/0/threaded
http://www.gentoo.org/security/en/glsa/glsa-200603-06.xml
http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2006:046
http://lists.gnu.org/archive/html/bug-tar/2006-02/msg00051.html
http://www.openpkg.org/security/OpenPKG-SA-2006.006-tar.html
http://www.osvdb.org/23371
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5252
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5978
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5993
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6094
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9295
http://www.redhat.com/support/errata/RHSA-2006-0232.html
http://securitytracker.com/id?1015705
http://secunia.com/advisories/18973
http://secunia.com/advisories/18976
http://secunia.com/advisories/18999
http://secunia.com/advisories/19016
http://secunia.com/advisories/19093
http://secunia.com/advisories/19130
http://secunia.com/advisories/19152
http://secunia.com/advisories/19236
http://secunia.com/advisories/20042
http://secunia.com/advisories/24479
http://secunia.com/advisories/24966
http://securityreason.com/securityalert/480
http://securityreason.com/securityalert/543
http://sunsolve.sun.com/search/document.do?assetkey=1-26-241646-1
SuSE Security Announcement: SUSE-SR:2006:005 (Google Search)
http://www.novell.com/linux/security/advisories/2006_05_sr.html
http://www.trustix.org/errata/2006/0010
https://usn.ubuntu.com/257-1/
http://www.vupen.com/english/advisories/2006/0684
http://www.vupen.com/english/advisories/2007/0930
http://www.vupen.com/english/advisories/2007/1470
http://www.vupen.com/english/advisories/2008/2518
XForce ISS Database: gnu-tar-pax-headers-bo(24855)
https://exchange.xforce.ibmcloud.com/vulnerabilities/24855
CopyrightCopyright (c) 2006 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.