27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>PVS</strong> ID: 4455 FAMILY: CGI RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running Sympa, an open-source mailing list software application. The<br />

reported version number is '%L'<br />

Solution: N/A<br />

CVE Not available<br />

CUPS < 1.3.7 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 4456 FAMILY: Web Servers RISK: LOW NESSUS ID:31730<br />

Description: Synopsis :\n\nThe remote printer service is affected by multiple<br />

vulnerabilities.\n\nAccording to its banner, the version of CUPS installed on the remote<br />

host is affected by several issues :\n\n - A buffer overflow in 'cgiCompileSearch' that can<br />

lead to arbitrary code execution (STR #2729).\n - A GIF image filter overflow involving<br />

'code_size' value from a user-supplied GIF image used in 'gif_read_lzw' (STR #2765).\n -<br />

A temporary file with Samba credentials may be left behind by cupsaddsmb if no Windows<br />

drivers were installed (STR #2779).<br />

Solution: Upgrade to version 1.3.7 or higher.<br />

CVE-2008-1373<br />

Opera < 9.27 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 4457 FAMILY: Web Clients RISK: HIGH NESSUS ID:31734<br />

Description: Synopsis :\n\nThe remote host contains a web browser that is affected by several<br />

issues.\n\nThe version of Opera installed on the remote host reportedly is affected by<br />

several issues :\n\n - Resized canvas patterns can lead to a program crash with possible<br />

memory corruption.\n - A newsfeed prompt can cause Opera to execute arbitrary code.\n -<br />

Improved keyboard handling of password inputs.<br />

Solution: Upgrade to version 9.27 or higher.<br />

CVE-2008-1762<br />

QuickTime < 7.4.5 Multiple Vulnerabilities<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 4458 FAMILY: Web Clients RISK: HIGH NESSUS ID:31735<br />

Description: Synopsis : \n\nThe remote Windows host contains an application that is affected by<br />

multiple vulnerabilities.\n\nThe version of QuickTime installed on the remote Windows<br />

host is older than 7.4.5. Such versions contain several vulnerabilities : \n\n - Untrusted Java<br />

applets may obtain elevated privileges (CVE-2008-1013).\n - Downloading a movie file<br />

may lead to information disclosure (CVE-2008-1014).\n - Viewing a specially-crafted<br />

movie file may lead to a program crash or arbitrary code execution (CVE-2008-1015,<br />

CVE-2008-1016, CVE-2008-1017, CVE-2008-1018, CVE-2008-1021, CVE-2008-1022).\n<br />

- Opening a specially-crafted PICT image file may lead to a program crash or arbitrary<br />

Family Internet Services 1163

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!