27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>PVS</strong> ID: 1220 FAMILY: Generic RISK: HIGH NESSUS ID:12240<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a heap overflow\n\nThe remote CVS server,<br />

according to its version number, might allow an attacker to execute arbitrary commands on<br />

the remote system because of a heap overflow in the cvs pserver code.<br />

Solution: Upgrade to CVS 1.11.16, 1.12.8, or later.<br />

CVE-2004-0396<br />

Apache < 1.3.31 / 2.0.49 Error Log Escape Sequence Injection<br />

<strong>PVS</strong> ID: 1221 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:12239<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw in the way that it displays log<br />

files\n\nThe target host is running an Apache web server that allows for the injection of<br />

arbitrary escape sequences into its error logs. An attacker might use this vulnerability in an<br />

attempt to exploit similar vulnerabilities in terminal emulators.<br />

Solution: Upgrade to Apache version 1.3.31, 2.0.49 or newer.<br />

CVE-2003-0020<br />

Winamp Fasttracker 2 Plug-in in_mod.dll Heap Overflow<br />

<strong>PVS</strong> ID: 1222 FAMILY: Generic RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a buffer overflow\n\nThe remote client is<br />

running a version of the Nullsoft Winamp media player that may be vulnerable to a heap<br />

overflow. This vulnerability may be used to remotely crash the client or possible execute<br />

arbitrary code.<br />

Solution: Upgrade to the latest version of Winamp.<br />

CVE-2004-1896<br />

Winamp b4s File Handling Multiple Malformed Fields Overflow<br />

<strong>PVS</strong> ID: 1223 FAMILY: Generic RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a buffer overflow\n\nWinamp versions 3.0<br />

build 488 and below suffer from a vulnerability in the processing of B4S files.<br />

Solution: Upgrade to the latest version of Nullsoft's Winamp.<br />

CVE-2003-1272<br />

H323 Application Detection<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 1224 FAMILY: Generic RISK: LOW NESSUS ID:12243<br />

Family Internet Services 311

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!