|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA532] DSA-532-2 libapache-mod-ssl Vulnerability Assessment Details
|
[DSA532] DSA-532-2 libapache-mod-ssl |
||
DSA-532-2 libapache-mod-ssl Detailed Explanation for this Vulnerability Assessment Two vulnerabilities were discovered in libapache-mod-ssl: Stack-based buffer overflow in the ssl_util_uuencode_binary function in ssl_util.c for Apache mod_ssl, when mod_ssl is configured to trust the issuing CA, may permit remote attackers to execute arbitrary code via a client certificate with a long subject DN. Format string vulnerability in the ssl_log function in ssl_engine_log.c in mod_ssl 2.8.19 for Apache 1.3.31 may permit remote attackers to execute arbitrary messages via format string specifiers in certain log messages for HTTPS. For the current stable distribution (woody), these problems have been fixed in version 2.8.9-2.4. For the unstable distribution (sid), CVE-2004-0488 was fixed in version 2.8.18, and CVE-2004-0700 will be fixed soon. We recommend that you update your libapache-mod-ssl package. Solution : http://www.debian.org/security/2004/dsa-532 Network Security Threat Level: High Networks Security ID: Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi |
||
Cables, Connectors |
Cisco Nexus 48-Port 10G SFP+ Switch N9K-9396PX w/ 9K-M12PQ 12-Port 40G QSFP
$249.99
Cisco Systems NCS2K-20-SMRFS-L optical multiplexor CISCO EXCESS
$3599.00
Cisco SG110 24 Port Gigabit Ethernet Switch w/ 2 x SFP SG110-24
$117.00
Cisco C6807-XL Catalyst Switch Chassis
$187.49
Cisco WS-C3850-48P-L 48-Port Gigabit 3850 PoE Switch w/ 715W+ C3850-NM-4-1G Mod
$83.00
Cisco C3850-NM-2-10G 2 Port Network Exp.Module for 3850
$38.99
Cisco CBS350-24FP-4G 28 Port PoE Managed Ethernet Switch
$319.99
Lot of 4 Cisco QSFP-40G-SR-BD 10-2945-02 Transceiver Modules Hologram
$47.99
Cisco C9200 48-Port Gigabit Network Switch With Ears P/N: C9200-48T-E Dual Power
$799.97
New Cisco C9200-NM-4X Catalyst 9200 Series Network Module 4 X 10GE *MINT*
$429.97
|
||
No Discussions have been posted on this vulnerability. |