Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Mandrake Local Security Checks >> MDKSA-2002:011: gzip


Vulnerability Assessment Details

MDKSA-2002:011: gzip

Vulnerability Assessment Summary
Check for the version of the gzip package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory MDKSA-2002:011 (gzip).


There are two problems with the gzip archiving program
the first is a crash
when an input file name is over 1020 characters, and the second is a buffer
overflow that could be exploited if gzip is run on a server such as an FTP
server. The patch applied is from the gzip developers and the problems have been
fixed in the latest beta.


Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2002:011
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

Barracuda Networks NG Firewall F300
$199.99
Barracuda Networks NG Firewall F300 pictureSonicWALL TZ 215 Firewall Hardware Only
$49.95
SonicWALL TZ 215 Firewall Hardware Only pictureLot of 4 Cisco Systems PIX 501 Series Firewall VPN Security w/ Power Supply
$60.0
Lot of 4 Cisco Systems PIX 501 Series Firewall VPN Security w/ Power Supply pictureIntrusion Detect PDS2300 Security Appliance Firewall
$199.89
Intrusion Detect PDS2300 Security Appliance Firewall picture


Discussions

No Discussions have been posted on this vulnerability.