27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

CVE-2011-1147<br />

BIND 9.7.1-9.7.2-P3 IXFR /DDNS Update Combinded with High Query Rate DoS<br />

<strong>PVS</strong> ID: 5803 FAMILY: DNS Servers RISK: HIGH NESSUS ID:52158<br />

Description: Synopsis : \n\nThe remote DNS server is vulnerable to a denial of service attack.\n\nThe<br />

remote host is running Bind, a popular name server. For your information, the observed<br />

version of Bind is : \n %L \n\nVersions of Bind 9.7.1-9.7.2-P3 are affected by a denial of<br />

service vulnerability. There is a small window of time after an authoritative server<br />

processes a successful IXFR transfer or a dynamic update during which the IXFR / update<br />

coupled with a query may cause a deadlock to occur. A server experiencing a high query<br />

and/or update rate will have a higher chance of being deadlocked.<br />

Solution: Upgrade to BIND 9.7.3 or later.<br />

CVE-2011-0414<br />

Email Attachment Detection (client)<br />

<strong>PVS</strong> ID: 5804 FAMILY: Policy RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host sent an email with the following attachment<br />

Solution: N/A<br />

realtimeonly<br />

CVE Not available<br />

Symantec Enterprise AV Client Detection<br />

<strong>PVS</strong> ID: 5805 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is an Symantec Enterprise AV client<br />

Solution: N/A<br />

CVE Not available<br />

iTunes < 10.2 Multiple Vulnerabilities<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 5806 FAMILY: Web Clients RISK: HIGH NESSUS ID:52535<br />

Description: Synopsis :\n\nThe remote host contains an application that is vulnerable to multiple attack<br />

vectors.\n\nThe remote host has iTunes installed, a popular media player for Windows and<br />

Mac OS. For your information, the observed version of iTunes is %L.\n\nVersions of<br />

iTunes earlier than 10.2 are potentially affected by numerous issues in the following<br />

components :\n\n - ImageIO\n\n - libxml\n\n - WebKit\n\nNote that these issues only affect<br />

iTunes on Windows.<br />

Family Internet Services 1574

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!