27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

strings, can overwrite critical system files. In both instances, the attacker only<br />

needs to be able to send files that are processed by ClamAV.<br />

Solution: Upgrade to version 0.90.0 or higher.<br />

CVE-2007-0898<br />

SpamAssassin < 3.1.8 Malformed HTML Long URI DoS<br />

<strong>PVS</strong> ID: 3918 FAMILY: SMTP Clients<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a Denial of Service (DoS) attack.\n\nThe<br />

remote host is running SpamAssassin, an anti-spam software application that detects and<br />

blocks spam emails. Due to a content-parsing error, SpamAssassin can be crashed when<br />

processing very long URIs within an email message. An attacker exploiting this flaw would<br />

only need to have the ability to craft and send an email. Successful exploitation leads to a<br />

loss of availability.<br />

Solution: Upgrade to version 3.1.8 or higher.<br />

CVE-2007-0451<br />

Catbird Appliance Detection<br />

<strong>PVS</strong> ID: 3919 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running the Catbird security appliance.<br />

Solution: N/A<br />

CVE Not available<br />

BitTorrent Client Detection<br />

<strong>PVS</strong> ID: 3920 FAMILY: Peer-To-Peer File Sharing<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is running software that should be authorized with respect to<br />

corporate policy.\n\nThe remote host is running the Bittorrent client.\nBitTorrent is a client<br />

application that allows users to quickly download files from multiple locations.<br />

Solution: Ensure that BitTorrent is allowed with respect to corporate policies and guidelines.<br />

CVE Not available<br />

IBM DB2 Multiple Local Vulnerabilities<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 3921 FAMILY: Database RISK: HIGH NESSUS ID:Not Available<br />

Family Internet Services 1015

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!