Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA636] DSA-636-1 glibc


Vulnerability Assessment Details

[DSA636] DSA-636-1 glibc

Vulnerability Assessment Summary
DSA-636-1 glibc

Detailed Explanation for this Vulnerability Assessment

Several insecure uses of temporary files have been discovered in
support scripts in the libc6 package which provides the c library for
a GNU/Linux system. Trustix developers found that the catchsegv
script uses temporary files insecurely. Openwall developers
discovered insecure temporary files in the glibcbug script. These
scripts are vulnerable to a symlink attack.
For the stable distribution (woody) these problems have been fixed in
version 2.2.5-11.8.
For the unstable distribution (sid) these problems have been fixed in
version 2.3.2.ds1-20.
We recommend that you upgrade your libc6 package.


Solution : http://www.debian.org/security/2005/dsa-636
Network Security Threat Level: High

Networks Security ID: 11286

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors

HP DL385p G8 2x AMD Opteron 16 Core CPU 3.2Ghz 96GB Ram P420i P420i Raid 8 BAY
$2136.94
HP DL385p G8 2x AMD Opteron 16 Core CPU 3.2Ghz 96GB Ram P420i  P420i Raid 8 BAY pictureDell PowerEdge R730 2x E5-2620v3 2.4GHz 6 Core 64GB 8x 600GB 15K SAS H730 RAID
$4425.0
Dell PowerEdge R730 2x E5-2620v3 2.4GHz 6 Core 64GB 8x 600GB 15K SAS H730 RAID picturewith OS - New Dell T30 Windows Server 2016, 2x1TB, Raid 1 - Business Office D028
$997.0
with OS - New Dell T30 Windows Server 2016, 2x1TB, Raid 1 - Business Office D028 pictureDell PowerEdge R730 2x E5-2690v3 2.6GHz 12 Core 384GB 4x 2TB 7.2K SATA H730 RAID
$9435.0
Dell PowerEdge R730 2x E5-2690v3 2.6GHz 12 Core 384GB 4x 2TB 7.2K SATA H730 RAID picture


Discussions

No Discussions have been posted on this vulnerability.