Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Mandrake Local Security Checks >> MDKSA-2002:011: gzip


Vulnerability Assessment Details

MDKSA-2002:011: gzip

Vulnerability Assessment Summary
Check for the version of the gzip package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory MDKSA-2002:011 (gzip).


There are two problems with the gzip archiving program
the first is a crash
when an input file name is over 1020 characters, and the second is a buffer
overflow that could be exploited if gzip is run on a server such as an FTP
server. The patch applied is from the gzip developers and the problems have been
fixed in the latest beta.


Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2002:011
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

Cisco Catalyst 2960G Gigabit Ethernet Switch • WS-C2960G-48TC-L • Tested & Reset
$84.99
Cisco Catalyst 2960G Gigabit Ethernet Switch • WS-C2960G-48TC-L • Tested & Reset pictureUSED Cisco ASA5520-AIP20-K9 ASA 5520 Security Appliance w/ AIP-SSM-20, SW, HA
$690.0
USED Cisco ASA5520-AIP20-K9 ASA 5520 Security Appliance w/ AIP-SSM-20, SW, HA pictureCisco 2951/K9 Integrated Gigabit Services Router w/ modules
$199.99
Cisco 2951/K9 Integrated Gigabit Services Router w/ modules pictureCisco Linksys E2500 V2 Wireless Wi-Fi Internet Router w/ adapter
$1.99
Cisco Linksys E2500 V2 Wireless Wi-Fi Internet Router w/ adapter picture


Discussions

No Discussions have been posted on this vulnerability.