27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

uttons. This can allow arbitrary code execution to occur.<br />

Solution: Upgrade to Opera 12.02 or later.<br />

CVE Not available<br />

Google Chrome < 21.0.1180.89 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 6563 FAMILY: Web Clients RISK: HIGH NESSUS ID:61774<br />

Description: Synopsis :\n\nThe remote host contains a web browser that is affected by multiple<br />

vulnerabilities.\n\nFor your information, the observed version of Google Chrome is :\n %L<br />

\n\nVersions of Google Chrome earlier than 21.0.1180.89 are potentially affected by the<br />

following vulnerabilities :\n\n - An out-of-bounds read error exists related to line-breaking.<br />

(CVE-2012-2865)\n\n - Variable casting errors exist related to 'run-ins' and XSL<br />

transformations. (CVE-2012-2866, CVE-2012-2871)\n\n - An unspecified error exists<br />

related to the SPDY protocol that can result in application crashes. (CVE-2012-2867)\n\n -<br />

A unspecified race condition exists related to 'workers' and XHR. (CVE-2012-2868)\n\n -<br />

An unspecified error exists related to stale buffers and URL loading. (CVE-2012-2869)\n\n<br />

- Memory management issues exist related to XPath processing. (CVE-2012-2870)\n\n -<br />

Cross-site scripting is possible during the SSL interstitial process.<br />

(CVE-2012-2872)\n\nSuccessful exploitation of any of these issue could lead to an<br />

application crash or even allow arbitrary code execution, subject to the user's privileges.<br />

Solution: Upgrade to Google Chrome 21.0.1180.89 or later.<br />

CVE-2012-2872<br />

Ustream mobile Android app detection<br />

<strong>PVS</strong> ID: 6564 FAMILY: Internet Services RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running the Ustream Android mobile application. Ustream app provides<br />

the user with the capiblity of broadcasting live using the phone's camera. It also allows for<br />

streaming of live events directly on the phone.<br />

Solution: Ensure that such usage is in aligment with Corporate policy<br />

CVE Not available<br />

Ustream mobile Android app streaming detection<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 6565 FAMILY: Internet Services RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is attempting to view a live stream using the Ustream Android mobile<br />

application. Ustream app provides the user with the capiblity of broadcasting live using the<br />

phone's camera. It also allows for streaming of live events directly on the phone.<br />

Solution: Ensure that such usage is in aligment with Corporate policy<br />

Family Internet Services 1796

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!