Startseite ▼ Bookkeeping
Online ▼ Sicherheits
Überprüfungs ▼
Verwaltetes
DNS ▼
Info
Bestellen/Erneuern
FAQ
AUP
Dynamic DNS Clients
Domaine konfigurieren Dyanmic DNS Update Password Netzwerk
Überwachung ▼
Enterprise
Erweiterte
Standard
Gratis Test
FAQ
Preis/Funktionszusammenfassung
Bestellen
Beispiele
Konfigurieren/Status Alarm Profile | |||
Test Kennung: | 1.3.6.1.4.1.25623.1.0.703292 |
Kategorie: | Debian Local Security Checks |
Titel: | Debian Security Advisory DSA 3292-1 (cinder - security update) |
Zusammenfassung: | Bastian Blank from credativ discovered that cinder, a;storage-as-a-service system for the OpenStack cloud computing suite,;contained a bug that would allow an authenticated user to read any;file from the cinder server. |
Beschreibung: | Summary: Bastian Blank from credativ discovered that cinder, a storage-as-a-service system for the OpenStack cloud computing suite, contained a bug that would allow an authenticated user to read any file from the cinder server. Affected Software/OS: cinder on Debian Linux Solution: For the stable distribution (jessie), this problem has been fixed in version 2014.1.3-11+deb8u1. For the unstable distribution (sid), this problem has been fixed in version 2015.1.0+2015.06.16.git26.9634b76ba5-1. We recommend that you upgrade your cinder packages. CVSS Score: 6.8 CVSS Vector: AV:N/AC:L/Au:S/C:C/I:N/A:N |
Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2015-1851 Debian Security Information: DSA-3292 (Google Search) http://www.debian.org/security/2015/dsa-3292 http://lists.openstack.org/pipermail/openstack-announce/2015-June/000367.html http://www.openwall.com/lists/oss-security/2015/06/13/1 http://www.openwall.com/lists/oss-security/2015/06/17/2 http://www.openwall.com/lists/oss-security/2015/06/17/7 RedHat Security Advisories: RHSA-2015:1206 http://rhn.redhat.com/errata/RHSA-2015-1206.html http://www.ubuntu.com/usn/USN-2703-1 |
Copyright | Copyright (c) 2015 Greenbone Networks GmbH http://greenbone.net |
Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |