Nessus Plugin #14552

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

[GLSA-200407-19] Pavuk: Digest authentication helper buffer overflow

Family:
Gentoo Local Security Checks
Category:
infos
Copyright:
(C) 2004 Michel Arboi
Summary:
Pavuk: Digest authentication helper buffer overflow
Version:
$Revision: 1.1 $
Cve_id:
-
Bugtraq_id:
-
Xrefs:
GLSA:200407-19
Description:
The remote host is affected by the vulnerability described in GLSA-200407-19
(Pavuk: Digest authentication helper buffer overflow)


Pavuk contains several buffer overflow vulnerabilities in the code handling
digest authentication.

Impact

An attacker could cause a buffer overflow, leading to arbitrary code
execution with the rights of the user running Pavuk.

Workaround

There is no known workaround at this time. All users are encouraged to
upgrade to the latest available version of Pavuk.


Solution:
All Pavuk users should upgrade to the latest version:
# emerge sync
# emerge -pv ">=net-misc/pavuk-0.9.28-r3"
# emerge ">=net-misc/pavuk-0.9.28-r3"


Risk Factor : Medium
Generiert am 27.04.2005 um 18:49:54 Uhr.