Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.702967
Categoría:Debian Local Security Checks
Título:Debian Security Advisory DSA 2967-1 (gnupg - security update)
Resumen:Jean-René Reinhard, Olivier Levillain and Florian Maury reported that;GnuPG, the GNU Privacy Guard, did not properly parse certain garbled;compressed data packets. A remote attacker could use this flaw to mount;a denial of service against GnuPG by triggering an infinite loop.
Descripción:Summary:
Jean-René Reinhard, Olivier Levillain and Florian Maury reported that
GnuPG, the GNU Privacy Guard, did not properly parse certain garbled
compressed data packets. A remote attacker could use this flaw to mount
a denial of service against GnuPG by triggering an infinite loop.

Affected Software/OS:
gnupg on Debian Linux

Solution:
For the stable distribution (wheezy), this problem has been fixed in
version 1.4.12-7+deb7u4.

For the unstable distribution (sid), this problem has been fixed in
version 1.4.16-1.2.

We recommend that you upgrade your gnupg packages.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2014-4617
Debian Security Information: DSA-2967 (Google Search)
http://www.debian.org/security/2014/dsa-2967
Debian Security Information: DSA-2968 (Google Search)
http://www.debian.org/security/2014/dsa-2968
http://lists.gnupg.org/pipermail/gnupg-announce/2014q2/000344.html
http://lists.gnupg.org/pipermail/gnupg-announce/2014q2/000345.html
http://secunia.com/advisories/59213
http://secunia.com/advisories/59351
http://secunia.com/advisories/59534
http://secunia.com/advisories/59578
SuSE Security Announcement: openSUSE-SU-2014:0866 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-07/msg00010.html
http://www.ubuntu.com/usn/USN-2258-1
CopyrightCopyright (c) 2014 Greenbone Networks GmbH http://greenbone.net

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.