Nessus Plugin #14854

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

[DSA017] DSA-017-1 jazip

Family:
Debian Local Security Checks
Category:
infos
Copyright:
This script is (C) 2004 Michel Arboi
Summary:
DSA-017-1 jazip
Version:
$Revision: 1.4 $
Cve_id:
CVE-2001-0110
Bugtraq_id:
2209
Xrefs:
DSA:017
Description:
With older versions of jazip a user could gain root
access for members of the floppy group to the local machine. The interface
doesn't run as root anymore and this very exploit was prevented. The program
now also truncates DISPLAY to 256 characters if it is bigger, which closes the
buffer overflow (within xforms).
We recommend you upgrade your jazip package immediately.


Solution : http://www.debian.org/security/2001/dsa-017
Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.