Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.51041
Kategorie:Red Hat Local Security Checks
Titel:RedHat Security Advisory RHSA-2004:383
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing updates announced in
advisory RHSA-2004:383.

The GNU libc packages (known as glibc) contain the standard C libraries
used by applications.

A security audit of the glibc packages in Red Hat Enterprise Linux 2.1
found a flaw in the resolver library which was originally reported as
affecting versions of ISC BIND 4.9. This flaw also applied to glibc
versions before 2.3.2. An attacker who is able to send DNS responses
(perhaps by creating a malicious DNS server) could remotely exploit this
vulnerability to execute arbitrary code or cause a denial of service. The
Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned
the name CVE-2002-0029 to this issue.

These updated packages also fix a dlclose function bug on certain shared
libraries, which caused program crashes.

All users of glibc should upgrade to these updated packages, which
resolve these issues.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2004-383.html
http://www.kb.cert.org/vuls/id/844360

Risk factor : High

CVSS Score:
7.5

Querverweis: BugTraq ID: 6186
Common Vulnerability Exposure (CVE) ID: CVE-2002-0029
http://lists.apple.com/archives/Security-announce/2002/Nov/msg00000.html
http://www.securityfocus.com/bid/6186
http://www.cert.org/advisories/CA-2002-31.html
CERT/CC vulnerability note: VU#844360
http://www.kb.cert.org/vuls/id/844360
NETBSD Security Advisory: NetBSD-SA2002-028
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-028.txt.asc
SGI Security Advisory: 20021201-01-P
ftp://patches.sgi.com/support/free/security/advisories/20021201-01-P
http://www.iss.net/security_center/static/10624.php
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.