Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.900011
Kategorie:General
Titel:Wireshark Multiple Vulnerabilities - July08 (Linux)
Zusammenfassung:The host is running Wiresharkl, which is prone to multiple; vulnerabilities.
Beschreibung:Summary:
The host is running Wiresharkl, which is prone to multiple
vulnerabilities.

Vulnerability Insight:
The flaws exist due to errors in GSM SMS dissector, PANA and KISMET
dissectors, RTMPT dissector, RMI dissector, and in syslog dissector.

Vulnerability Impact:
Successful exploitation could result in application crash,
disclose of system memory, and an incomplete syslog encapsulated packets.

Affected Software/OS:
Wireshark versions prior to 1.0.1 on Linux (All).

Solution:
Upgrade to wireshark to 1.0.1 or later.

Quick Fix : Disable the following dissectors, GSM SMS, PANA, KISMET, RTMPT, and RMI

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: BugTraq ID: 28485
Common Vulnerability Exposure (CVE) ID: CVE-2008-1561
http://www.securityfocus.com/bid/28485
Bugtraq: 20080404 rPSA-2008-0138-1 tshark wireshark (Google Search)
http://www.securityfocus.com/archive/1/490487/100/0/threaded
https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00140.html
https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00228.html
http://www.gentoo.org/security/en/glsa/glsa-200805-05.xml
http://www.mandriva.com/security/advisories?name=MDVSA-2008:091
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15089
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9315
http://www.redhat.com/support/errata/RHSA-2008-0890.html
http://www.securitytracker.com/id?1019728
http://secunia.com/advisories/29569
http://secunia.com/advisories/29622
http://secunia.com/advisories/29695
http://secunia.com/advisories/29736
http://secunia.com/advisories/29971
http://secunia.com/advisories/32091
SuSE Security Announcement: SUSE-SR:2008:008 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00005.html
http://www.vupen.com/english/advisories/2008/1007/references
http://www.vupen.com/english/advisories/2008/2773
XForce ISS Database: wireshark-roofnet-dissector-dos(41515)
https://exchange.xforce.ibmcloud.com/vulnerabilities/41515
XForce ISS Database: wireshark-x509sat-dissector-dos(41514)
https://exchange.xforce.ibmcloud.com/vulnerabilities/41514
Common Vulnerability Exposure (CVE) ID: CVE-2008-1562
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14549
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9318
XForce ISS Database: wireshark-ldap-dissector-dos(41516)
https://exchange.xforce.ibmcloud.com/vulnerabilities/41516
Common Vulnerability Exposure (CVE) ID: CVE-2008-1563
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10238
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15074
XForce ISS Database: wireshark-sccp-dissector-dos(41517)
https://exchange.xforce.ibmcloud.com/vulnerabilities/41517
CopyrightCopyright (C) 2008 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.