Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.72029
Kategorie:Mandrake Local Security Checks
Titel:Mandriva Security Advisory MDVSA-2012:043 (nginx)
Zusammenfassung:NOSUMMARY
Beschreibung:Description:
The remote host is missing an update to nginx
announced via advisory MDVSA-2012:043.

A vulnerability has been found and corrected in nginx:

Specially crafted backend response could result in sensitive
information leak (CVE-2012-1180).

The updated packages have been patched to correct this issue.

Affected: 2010.1, 2011.

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDVSA-2012:043

Risk factor : High

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2012-1180
BugTraq ID: 52578
http://www.securityfocus.com/bid/52578
Bugtraq: 20120315 nginx fix for malformed HTTP responses from upstream servers (Google Search)
http://seclists.org/bugtraq/2012/Mar/65
Debian Security Information: DSA-2434 (Google Search)
http://www.debian.org/security/2012/dsa-2434
http://lists.fedoraproject.org/pipermail/package-announce/2012-April/077966.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-March/076646.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-March/076671.html
http://security.gentoo.org/glsa/glsa-201203-22.xml
http://www.mandriva.com/security/advisories?name=MDVSA-2012:043
https://bugzilla.redhat.com/show_bug.cgi?id=803856
http://www.openwall.com/lists/oss-security/2012/03/15/5
http://www.openwall.com/lists/oss-security/2012/03/15/9
http://osvdb.org/80124
http://www.securitytracker.com/id?1026827
http://secunia.com/advisories/48465
http://secunia.com/advisories/48577
SuSE Security Announcement: openSUSE-SU-2012:0469 (Google Search)
https://hermes.opensuse.org/messages/14173096
XForce ISS Database: nginx-ngxcpystrn-info-disclosure(74191)
https://exchange.xforce.ibmcloud.com/vulnerabilities/74191
CopyrightCopyright (c) 2012 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.