Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.57598
Kategorie:SuSE Local Security Checks
Titel:SuSE Security Advisory SUSE-SA:2006:070 (pdns)
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing updates announced in
advisory SUSE-SA:2006:070.

Two security problems that have been found in PowerDNS are fixed by this update:

CVE-2006-4251: The PowerDNS Recursor can be made to crash by sending
malformed questions to it over TCP potentially executing code.

CVE-2006-4252: Zero second CNAME TTLs can make PowerDNS exhaust allocated
stack space and crash.

Solution:
Update your system with the packages as indicated in
the referenced security advisory.

http://www.securityspace.com/smysecure/catid.html?in=SUSE-SA:2006:070

Risk factor : High

CVSS Score:
7.5

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2006-4251
BugTraq ID: 21037
http://www.securityfocus.com/bid/21037
Debian Security Information: DSA-1211 (Google Search)
http://www.debian.org/security/2006/dsa-1211
http://secunia.com/advisories/22824
http://secunia.com/advisories/22903
http://secunia.com/advisories/22976
SuSE Security Announcement: SUSE-SA:2006:070 (Google Search)
http://lists.suse.com/archive/suse-security-announce/2006-Nov/0007.html
http://www.vupen.com/english/advisories/2006/4484
XForce ISS Database: powerdns-dns-bo(30270)
https://exchange.xforce.ibmcloud.com/vulnerabilities/30270
Common Vulnerability Exposure (CVE) ID: CVE-2006-4252
XForce ISS Database: powerdns-cname-bo(30257)
https://exchange.xforce.ibmcloud.com/vulnerabilities/30257
CopyrightCopyright (c) 2006 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.