Inicial ▼ Bookkeeping
Online ▼ Auditorias ▼
DNS
Administrado ▼
Acerca de DNS
Ordenar/Renovar
Preguntas Frecuentes
AUP
Dynamic DNS Clients
Configurar Dominios Dynamic DNS Update Password Monitoreo
de Redes ▼
Enterprise
Avanzado
Estándarr
Prueba
Preguntas Frecuentes
Resumen de Precio/Funciones
Ordenar
Muestras
Configure/Status Alert Profiles | |||
ID de Prueba: | 1.3.6.1.4.1.25623.1.0.71799 |
Categoría: | Ubuntu Local Security Checks |
Título: | Ubuntu USN-1448-1 (linux-image-3.2.0-24-generic) |
Resumen: | NOSUMMARY |
Descripción: | Description: The remote host is missing an update to linux-image-3.2.0-24-generic announced via advisory USN-1448-1. Details: A flaw was found in the Linux kernel's KVM (Kernel Virtual Machine) virtual cpu setup. An unprivileged local user could exploit this flaw to crash the system leading to a denial of service. (CVE-2012-1601) Steve Grubb reported a flaw with Linux fscaps (file system base capabilities) when used to increase the permissions of a process. For application on which fscaps are in use a local attacker can disable address space randomization to make attacking the process with raised privileges easier. (CVE-2012-2123) Solution: The problem can be corrected by updating your system to the following package versions: Ubuntu 12.04 LTS: linux-image-3.2.0-24-generic 3.2.0-24.38 linux-image-3.2.0-24-generic-pae 3.2.0-24.38 linux-image-3.2.0-24-omap 3.2.0-24.38 linux-image-3.2.0-24-powerpc-smp 3.2.0-24.38 linux-image-3.2.0-24-powerpc64-smp 3.2.0-24.38 linux-image-3.2.0-24-virtual 3.2.0-24.38 http://www.securityspace.com/smysecure/catid.html?in=USN-1448-1 CVSS Score: 7.2 CVSS Vector: AV:L/AC:L/Au:NR/C:C/I:C/A:C |
Referencia Cruzada: |
Common Vulnerability Exposure (CVE) ID: CVE-2012-1601 Debian Security Information: DSA-2469 (Google Search) http://www.debian.org/security/2012/dsa-2469 http://www.openwall.com/lists/oss-security/2012/03/30/1 RedHat Security Advisories: RHSA-2012:0571 http://rhn.redhat.com/errata/RHSA-2012-0571.html RedHat Security Advisories: RHSA-2012:0676 http://rhn.redhat.com/errata/RHSA-2012-0676.html http://www.securitytracker.com/id?1026897 http://secunia.com/advisories/49928 SuSE Security Announcement: SUSE-SU-2012:1679 (Google Search) https://www.suse.com/support/update/announcement/2012/suse-su-20121679-1.html SuSE Security Announcement: openSUSE-SU-2013:0925 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2013-06/msg00005.html Common Vulnerability Exposure (CVE) ID: CVE-2012-2123 BugTraq ID: 53166 http://www.securityfocus.com/bid/53166 http://www.openwall.com/lists/oss-security/2012/04/20/6 RedHat Security Advisories: RHSA-2012:0670 http://rhn.redhat.com/errata/RHSA-2012-0670.html RedHat Security Advisories: RHSA-2012:0743 http://rhn.redhat.com/errata/RHSA-2012-0743.html http://www.securitytracker.com/id?1027072 XForce ISS Database: linux-kernel-fcaps-sec-bypass(75043) https://exchange.xforce.ibmcloud.com/vulnerabilities/75043 |
Copyright | Copyright (c) 2012 E-Soft Inc. http://www.securityspace.com |
Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |