27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: Synopsis : \n\nThe remote host is vulnerable to a Denial of Service (DoS) attack.\n\nThe<br />

remote host is running Microsoft Media Player version: \n %L .\n\nThere is a flaw in this<br />

version of Media Player that would allow a remote attacker to crash the application. The<br />

flaw is in the way that Media Player parses long playlist files. An attacker exploiting this<br />

flaw would need to be able to convince a user to open a malicious playlist file.<br />

Solution: Upgrade to a version of Windows Media Player higher than 10.00.00.4036.<br />

CVE-2006-6134<br />

WinGate < 6.2.0 Compressed Name Pointer DoS<br />

<strong>PVS</strong> ID: 3818 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote proxy is affected by a denial of service vulnerability.\n\nThe<br />

remote host appears to be running WinGate, a Windows application for managing and<br />

securing Internet access. The version of WinGate installed on the remote host contains a<br />

flaw involving the processing of DNS requests with compressed name pointers. By sending<br />

a specially-crafted DNS request to a UDP port on which WinGate is listening, an<br />

unauthenticated remote attacker can cause the affected application to consume 100% of the<br />

available CPU, thereby denying service to legitimate users.<br />

Solution: Upgrade to version 6.2.0 or higher.<br />

iTunes Detection<br />

CVE-2006-4518<br />

<strong>PVS</strong> ID: 3819 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is running software that should be authorized with respect to<br />

corporate policy.\n\nThe remote host is running an iTunes music share version<br />

%L.\niTunes is a software package that is used to manage music media files. iTunes has a<br />

'music share' feature that allows user(s) to access their music via an iTunes web server.<br />

Solution: Ensure that such software is in alignment with Corporate policies and guidelines.<br />

iTunes Client Detection<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 3820 FAMILY: Web Clients RISK: LOW NESSUS ID:Not Available<br />

Description: The remote host is running iTunes, an application for managing and listening to music<br />

media files. The version of iTunes client is: \n %L .<br />

Solution: Ensure that such software is in alignment with corporate policies and guidelines.<br />

Family Internet Services 988

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!