New Security Vulnerabilities 23rd October 2007

The following new security tests were added to Telspace' database:

 

TOTAL THREATS IN THE DATABASE 16430

 

NEW THREATS RISK FACTOR SUMMARY
(*****) Urgent Risk 2
(**** ) Critical Risk 72
(*** ) High Risk 3
(** ) Medium Risk 3
(* ) Low Risk 2

 

NEW THREATS FAMILY SUMMARY
Solaris Local Checks 59
Gentoo Local Checks 4
Red Hat Local Checks 3
FreeBSD Local Checks 3
Remote Shell Access 2
Windows 2
Service Detection 2
Debian Local Checks 2
Centos Local Checks 2
FTP Services 1
Miscellaneous 1
Web Services 1

 

(*****) Urgent Risk - FTP Services
ProFTP sreplace Buffer Overflow Vulnerability

(*****) Urgent Risk - Remote Shell Access
BrightStor ARCserve Backup Multiple Vulnerabilities (QO91094)

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 126106-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 117122-03

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 116175-05

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 125438-10

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 125438-10

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (sparc) : 125407-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 126126-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 125483-03

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 116649-20

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (sparc) : 122073-02

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 120739-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 125197-05

(**** ) Critical Risk - Windows
Kaspersky Web Scanner ActiveX Format String Vulnerability

(**** ) Critical Risk - Windows
Winamp < 5.5 FLAC Plug-in Multiple Buffer Overflow Vulnerabilities

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0964: openssl

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0960: hpijs

(**** ) Critical Risk - Web Services
TikiWiki f Parameter Command Execution Vulnerability

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 125719-02

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (sparc) : 121913-15

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 126254-02

(**** ) Critical Risk - Debian Local Checks
 [DSA1387] DSA-1387-1 librpcsecgss

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (sparc) : 121913-15

(**** ) Critical Risk - Remote Shell Access
HP Linux Imaging and Printing System hpssd Daemon Arbitrary Command Execution Vulnerability

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 121914-15

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (sparc) : 125437-10

(**** ) Critical Risk - Gentoo Local Checks
 [GLSA-200710-18] util-linux: Local privilege escalation

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 125139-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 125423-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 125138-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 121914-15

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 109798-04

(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0909

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (sparc) : 125136-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 126480-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 126479-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 126422-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 122073-02

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 125139-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 121914-15

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (sparc) : 125136-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 126441-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 122715-02

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 125138-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 126107-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 127034-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (sparc) : 122073-02

(**** ) Critical Risk - Miscellaneous
KeyServer Default Credentials

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 126480-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 125139-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (sparc) : 126105-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 109026-08

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 125407-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (sparc) : 125137-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 125137-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (sparc) : 126479-04

(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0905

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 120012-14

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 116649-20

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (i386) : 126132-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 125136-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 120740-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 121913-15

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 115554-24

(**** ) Critical Risk - Debian Local Checks
 [DSA1388] DSA-1388-1 dhcp

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 125138-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 9 (i386) : 123377-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (sparc) : 125137-04

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 125276-05

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0912: libvorbis

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (sparc) : 125437-10

(**** ) Critical Risk - Solaris Local Checks
Solaris 10 (i386) : 125419-01

(**** ) Critical Risk - Solaris Local Checks
Solaris 8 (sparc) : 125437-10

(*** ) High Risk - Gentoo Local Checks
 [GLSA-200710-17] Balsa: Buffer overflow

(*** ) High Risk - Gentoo Local Checks
 [GLSA-200710-19] The Sleuth Kit: Integer underflow

(*** ) High Risk - Gentoo Local Checks
 [GLSA-200710-20] PDFKit, ImageKits: Buffer overflow

(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : png -- multiple vulnerabilities (1015)

(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : nagios-plugins -- Long Location Header Buffer Overflow Vulnerability (1017)

(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : ImageMagick -- multiple vulnerabilities (1016)

(* ) Low Risk - Service Detection
X Font Service Detection

(* ) Low Risk - Service Detection
HP Linux Imaging and Printing System HPSSD Daemon Detection



Copyright © 2010 Telspace. All Rights Reserved