|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Gentoo Local Security Checks >> [GLSA-200601-05] mod_auth_pgsql: Multiple format string vulnerabilities Vulnerability Assessment Details
|
[GLSA-200601-05] mod_auth_pgsql: Multiple format string vulnerabilities |
||
mod_auth_pgsql: Multiple format string vulnerabilities Detailed Explanation for this Vulnerability Assessment The remote host is affected by the vulnerability described in GLSA-200601-05 (mod_auth_pgsql: Multiple format string vulnerabilities) The error logging functions of mod_auth_pgsql fail to validate certain strings before passing them to syslog, resulting in format string vulnerabilities. Impact An unauthenticated remote attacker could exploit these vulnerabilities to execute arbitrary code with the rights of the user running the Apache2 server by sending specially crafted login names. Workaround There is no known workaround at this time. References: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3656 http://www.frsirt.com/english/advisories/2006/0070 Solution: All mod_auth_pgsql users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=net-www/mod_auth_pgsql-2.0.3" Network Security Threat Level: High Networks Security ID: Vulnerability Assessment Copyright: (C) 2006 Michel Arboi |
||
Cables, Connectors |
Handheld Cordless Car Vacuum: 14000PA High Power, Lightweight, Black
$45.99
Electric Mini Air Duster Blower Vacuum Cleaner for PC Computer Laptop Dust
$30.95
100000RPM Cordless Air Duster Blower Compressed Computer Cleaning Vacuum Cleaner
$32.99
Electric Vacuum Cleaner Air Duster Suction High Pressure for Computer Car Home
$10.87
Mini Computer Vacuum USB Keyboard Cleaner PC Laptop Brush Dust Cleaning Kit US
$13.68
Compressed Air Duster with Air Blower 100000RPM Vacuum Cleaner and Air Duster
$38.99
Electric Mini Cordless Air Duster Blower Vacuum Cleaner for Computer/CarCleaning
$17.58
4in1 Cordless Car Vacuum Cleaner Air Blower Wireless Handheld Rechargeable Mini
$17.99
4 in 1 upgrade Car Vacuum Cleaner Air Blower Wireless Handheld Rechargeable Mini
$17.98
2 in 1 Cordless Air Duster & Vacuum Cleaner For Car Home Office Rechargeable
$23.85
|
||
No Discussions have been posted on this vulnerability. |