Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.831677
Kategorie:Mandrake Local Security Checks
Titel:Mandriva Update for nut MDVSA-2012:087 (nut)
Zusammenfassung:The remote host is missing an update for the 'nut'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'nut'
package(s) announced via the referenced advisory.

Vulnerability Insight:
A vulnerability has been discovered and corrected in nut:

Buffer overflow in the addchar function in common/parseconf.c in upsd
in Network UPS Tools (NUT) before 2.6.4 allows remote attackers to
execute arbitrary code or cause a denial of service (electric-power
outage) via a long string containing non-printable characters
(CVE-2012-2944).

The updated packages have been patched to correct this issue.

Affected Software/OS:
nut on Mandriva Linux 2011.0,
Mandriva Enterprise Server 5.2,
Mandriva Linux 2010.1

Solution:
Please Install the Updated Packages.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2012-2944
BugTraq ID: 53743
http://www.securityfocus.com/bid/53743
Debian Security Information: DSA-2484 (Google Search)
http://www.debian.org/security/2012/dsa-2484
http://www.mandriva.com/security/advisories?name=MDVSA-2012:087
http://www.osvdb.org/82409
http://secunia.com/advisories/49348
http://secunia.com/advisories/50389
SuSE Security Announcement: openSUSE-SU-2012:1069 (Google Search)
https://hermes.opensuse.org/messages/15514634
XForce ISS Database: networkupstools-addchar-bo(75980)
https://exchange.xforce.ibmcloud.com/vulnerabilities/75980
CopyrightCopyright (c) 2012 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.