27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

CVE-2006-3275<br />

MailEnable SMTP Service HELO Command Remote DoS<br />

<strong>PVS</strong> ID: 3670 FAMILY: SMTP Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a Denial of Service (DoS) attack.\n\nThe<br />

remote host is running a vulnerable version of the MailEnable email server. While the<br />

details of the flaw are unknown, it is alleged that a remote attacker can create a query such<br />

that when the MailEnable server parses the query, the service crashes. Successful<br />

exploitation denies access to legitimate users.<br />

Solution: Upgrade to MailEnable Professional 1.74 or higher, MailEnable Enterprise Edition 1.22 or<br />

higher, or Mailenable Standard 1.94 or higher.<br />

CVE-2006-3277<br />

iTunes < 6.0.5 AAC File Parsing Overflow<br />

<strong>PVS</strong> ID: 3671 FAMILY: Web Clients<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:21781<br />

Description: Synopsis :\n\nThe remote host contains an application that is affected by a remote code<br />

execution flaw.\n\nDescription :\n\nThe remote host is running iTunes, a popular jukebox<br />

program.\nThe remote version of this software is vulnerable to an integer overflow when it<br />

parses specially crafted AAC files that may lead to the execution of arbitrary code.\n\nAn<br />

attacker may exploit this flaw by sending a malformed AAC file to a user on the remote<br />

host and wait for them to play it with iTunes.\n\nRisk factor :\n\nMedium<br />

Solution: Upgrade to version 6.0.5 or higher.<br />

CVE-2006-1467<br />

Mac OS X < 10.4.7 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 3672 FAMILY: Operating System Detection<br />

Description: Synopsis :\n\nThe remote host is missing a Mac OS X update that fixes a security<br />

10.4.7.\n\nMac OS X 10.4.7 contains several security fixes for the following prog<br />

Solution: Upgrade to Mac OS X 10.4.7 or<br />

higher:\nhttp://www.apple.com/support/downloads/macosxupdate1047intel.html\nhttp://www.apple.com/su<br />

OpenOffice.org Detection<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

CVE-2006-1469<br />

<strong>PVS</strong> ID: 3673 FAMILY: Generic RISK: NONE NESSUS ID:Not Available<br />

Family Internet Services 948

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!