27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

CVE-2007-4646<br />

Samba < 3.0.26 idmap_ad.co Local Privilege Escalation<br />

<strong>PVS</strong> ID: 4208 FAMILY: Samba<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a local 'privilege escalation'<br />

flaw.\n\nAccording to its banner, the version of the Samba server installed on the remote<br />

host ('%L') is affected by a flaw where a local attacker can gain group-0 access. In order for<br />

the exploit to work, the local system must be configured to use Microsoft Active Directory<br />

and return a NULL value for the group ID. Successful exploitation would result in the local<br />

attacker gaining elevated access on the local machine.<br />

Solution: Upgrade to version 3.0.26 or higher.<br />

CVE-2007-4138<br />

OpenSSH < 4.7 Trusted X11 Cookie Connection Policy Bypass<br />

<strong>PVS</strong> ID: 4209 FAMILY: SSH RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis : \n\nThe remote host is vulnerable to a local 'privilege escalation' flaw.\n\nThe<br />

remote host is running a version of OpenSSH that is vulnerable to a flaw in the way that it<br />

handles local X11 cookies. It is alleged that an attacker exploiting this flaw would be able<br />

to execute SSH commands for which they are not authorized. The reported version of SSH<br />

is: \n %L<br />

Solution: Upgrade to version 4.7 or higher.<br />

CVE-2007-4752<br />

Vulnerability in Microsoft MSN Messenger and Windows Live Messenger Could Allow Remote Code<br />

Execution (942099)<br />

<strong>PVS</strong> ID: 4210 FAMILY: Internet Messengers RISK: HIGH NESSUS ID:26019<br />

Description: Synopsis :\n\nArbitrary code can be executed on the remote host through MSN and<br />

Windows Live Messenger.\n\nThe remote host is running MSN Messenger or Windows<br />

Live Messenger. The version of Messenger used on the remote host is vulnerable to a<br />

remote buffer overflow in the way it handles webcam and video chat sessions. An attacker<br />

may exploit this vulnerability to execute arbitrary code on the remote host.<br />

Solution: Upgrade or patch according to vendor recommendations.<br />

CVE-2007-2931<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Vulnerability in Microsoft MSN Messenger and Windows Live Messenger Could Allow Remote Code<br />

Execution (942099)<br />

Family Internet Services 1094

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!