Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Mandrake Local Security Checks >> MDKSA-2003:112-1: cvs


Vulnerability Assessment Details

MDKSA-2003:112-1: cvs

Vulnerability Assessment Summary
Check for the version of the cvs package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory MDKSA-2003:112-1 (cvs).


A vulnerability was discovered in the CVS server < 1.11.10 where a malformed
module request could cause the CVS server to attempt to create directories and
possibly files at the root of the filesystem holding the CVS repository.
Updated packages are available that fix the vulnerability by providing CVS
1.11.10 on all supported distributions.
Update:
The previous updates had an incorrect temporary directory hard-coded in the cvs
binary for 9.1 and 9.2. This update corrects the problem.


Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2003:112-1
Network Security Threat Level: High

Networks Security ID: 9178

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors


Cisco SG95-16 16-Port Gigabit Switch SG95-16-KR picture

Cisco SG95-16 16-Port Gigabit Switch SG95-16-KR

$47.00



Cisco WS-C3750-48PS-S 48-Port Managed Gigabit Switch picture

Cisco WS-C3750-48PS-S 48-Port Managed Gigabit Switch

$45.00



Cisco WS-C2960C-8PC-L 2960-C 8 Ports PoE Manageable Switch 1 Year Warranty picture

Cisco WS-C2960C-8PC-L 2960-C 8 Ports PoE Manageable Switch 1 Year Warranty

$77.00



Cisco Catalyst 3850 48 PoE+ 48-Port Gigabit Managed Switch WS-C3850-48F-E picture

Cisco Catalyst 3850 48 PoE+ 48-Port Gigabit Managed Switch WS-C3850-48F-E

$219.99



New Linksys SE3005 5-port Gigabit Ethernet Switch picture

New Linksys SE3005 5-port Gigabit Ethernet Switch

$15.99



Linksys SE3008 8 Ports Rack Mountable Gigabit Ethernet Switch picture

Linksys SE3008 8 Ports Rack Mountable Gigabit Ethernet Switch

$18.99



*NETGEAR PROSAFE (JGS524V2) 24-Port Gigabit Ethernet Switch *NO AC* picture

*NETGEAR PROSAFE (JGS524V2) 24-Port Gigabit Ethernet Switch *NO AC*

$29.99



TP-Link TL-SF1005D 5-Port 10/100Mbps Fast Ethernet Desktop Switch picture

TP-Link TL-SF1005D 5-Port 10/100Mbps Fast Ethernet Desktop Switch

$12.99



YuanLey 10 Port Gigabit PoE Switch With 8 Poe Unmanaged with 2 1000Mbps Uplink picture

YuanLey 10 Port Gigabit PoE Switch With 8 Poe Unmanaged with 2 1000Mbps Uplink

$20.00



Cisco Small Business SG200-26 26 Port Smart Gigabit Ethernet Network Switch picture

Cisco Small Business SG200-26 26 Port Smart Gigabit Ethernet Network Switch

$43.95



Discussions

No Discussions have been posted on this vulnerability.