Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.70985
Categoría:Ubuntu Local Security Checks
Título:Ubuntu USN-1255-1 (libmodplug1)
Resumen:NOSUMMARY
Descripción:Description:
The remote host is missing an update to libmodplug1
announced via advisory USN-1255-1.

Details:

Hossein Lotfi discovered that libmodplug did not correctly handle certain
malformed media files. If a user or automated system were tricked into
opening a crafted media file, an attacker could cause a denial of service
or possibly execute arbitrary code with privileges of the user invoking the
program. (CVE-2011-2911, CVE-2011-2912, CVE-2011-2913)

It was discovered that libmodplug did not correctly handle certain
malformed media files. If a user or automated system were tricked into
opening a crafted media file, an attacker could cause a denial of service
or possibly execute arbitrary code with privileges of the user invoking the
program. (CVE-2011-2914, CVE-2011-2915)

Solution:
The problem can be corrected by updating your system to the following
package versions:

Ubuntu 11.10:
libmodplug1 1:0.8.8.2-3ubuntu1.1

Ubuntu 11.04:
libmodplug1 1:0.8.8.1-2ubuntu0.3

Ubuntu 10.10:
libmodplug1 1:0.8.8.1-1ubuntu1.3

Ubuntu 10.04 LTS:
libmodplug0c2 1:0.8.7-1ubuntu0.3

http://www.securityspace.com/smysecure/catid.html?in=USN-1255-1

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2011-2911
BugTraq ID: 48979
http://www.securityfocus.com/bid/48979
Debian Security Information: DSA-2415 (Google Search)
http://www.debian.org/security/2012/dsa-2415
http://lists.fedoraproject.org/pipermail/package-announce/2011-August/063786.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-September/066044.html
http://www.gentoo.org/security/en/glsa/glsa-201203-14.xml
http://www.gentoo.org/security/en/glsa/glsa-201203-16.xml
http://www.openwall.com/lists/oss-security/2011/08/10/4
http://www.openwall.com/lists/oss-security/2011/08/12/4
http://www.osvdb.org/74208
RedHat Security Advisories: RHSA-2011:1264
http://rhn.redhat.com/errata/RHSA-2011-1264.html
http://secunia.com/advisories/45131
http://secunia.com/advisories/45658
http://secunia.com/advisories/45742
http://secunia.com/advisories/45901
http://secunia.com/advisories/46032
http://secunia.com/advisories/46043
http://secunia.com/advisories/46793
http://secunia.com/advisories/48058
http://secunia.com/advisories/48434
http://secunia.com/advisories/48439
SuSE Security Announcement: openSUSE-SU-2011:0943 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00019.html
http://ubuntu.com/usn/usn-1255-1
XForce ISS Database: libmodplug-wav-bo(68983)
https://exchange.xforce.ibmcloud.com/vulnerabilities/68983
Common Vulnerability Exposure (CVE) ID: CVE-2011-2912
http://www.osvdb.org/74209
XForce ISS Database: libmodplug-s3m-bo(68984)
https://exchange.xforce.ibmcloud.com/vulnerabilities/68984
Common Vulnerability Exposure (CVE) ID: CVE-2011-2913
http://www.osvdb.org/74210
XForce ISS Database: libmodplug-ams-code-execution(68985)
https://exchange.xforce.ibmcloud.com/vulnerabilities/68985
Common Vulnerability Exposure (CVE) ID: CVE-2011-2914
http://www.osvdb.org/74211
XForce ISS Database: libmodplug-dsm-code-execution(68986)
Common Vulnerability Exposure (CVE) ID: CVE-2011-2915
XForce ISS Database: libmodplug-csoundfile-code-exec(68987)
https://exchange.xforce.ibmcloud.com/vulnerabilities/68987
CopyrightCopyright (c) 2012 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.