27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: The remote host is running the NBCOlympics application for Apple iPad. The application<br />

is used to get updates and news. It also allows for viewing of videos and streaming of live<br />

events.<br />

Solution: Ensure that such usage is in aligment with Corporate policy<br />

CVE Not available<br />

NBCOlympics application detection for Apple iPad.<br />

<strong>PVS</strong> ID: 6527 FAMILY: Internet Services RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running the NBCOlympics application for Apple iPad. The application<br />

is used to get updates and news. It also allows for viewing of videos and streaming of live<br />

events.<br />

Solution: Ensure that such usage is in aligment with Corporate policy<br />

CVE Not available<br />

Google Chrome < 21.0.1180.60 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 6528 FAMILY: Web Clients RISK: HIGH NESSUS ID:61381<br />

Description: Synopsis :\n\nThe remote host contains a web browser that is affected by multiple<br />

vulnerabilities.\n\nFor your information, the observed version of Google Chrome is :\n %L<br />

\n\nVersions of Google Chrome earlier than 21.0.1180.60 are potentially affected by the<br />

following vulnerabilities :\n\n - Re-prompts are not displayed for excessive downloads.<br />

(CVE-2012-2847)\n\n - Drag and drop file access restrictions are not restrictive enough.<br />

(CVE-2012-2848)\n\n - An off-by-one read error exists related to GIF decoding.<br />

(CVE-2012-2849)\n\n - Various, unspecified errors exist related to PDF processing.<br />

(CVE-2012-2850)\n\n - Various, unspecified integer overflows exist related to PDF<br />

processing. (CVE-2012-2851)\n\n - A use-after-free error exists related to object linkage<br />

and PDF processing. (CVE-2012-2852)\n\n - An error exists related to 'webRequest' and<br />

'Chrome Web Store' interference. (CVE-2012-2853)\n\n - Pointer values can be leaked to<br />

'WebUI' renderers. (CVE-2012-2854)\n\n - An unspecified use-after-free error exists<br />

related to PDF processing. (CVE-2012-2855)\n\n - Unspecified out-of-bounds reads exist<br />

related to the PDF viewer. (CVE-2012-2856) - A use-after-free error exists related to CSS<br />

DOM processing. (CVE-2012-2857) - A buffer overflow exists related to 'WebP' decoding.<br />

(CVE-2012-2858)\n\n - An out-of-bounds access error exists related to the date picker.<br />

(CVE-2012-2860)<br />

Solution: Upgrade to Google Chrome 21.0.1180.60 or later.<br />

CVE-2012-2860<br />

nginx < 1.2.x / 1.3.x < 1.2.1 / 1.3.1 Vulnerabilities with Windows directory aliases<br />

<strong>PVS</strong> ID: 6529 FAMILY: Web Servers<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

RISK:<br />

MEDIUM<br />

NESSUS ID:61394<br />

Family Internet Services 1785

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!