Vulnerability Solutions
| The Nimsoft Cloud Monitor Periodic Vulnerability Scan checks for the vulnerability below. To see the most recently added vulnerability solutions that are scanned by WatchMouse, go to the Vulnerability Solutions overview |
| Category: Ubuntu Local Security Checks | Risk factor: Medium | Added: 18 Mar 2010 |
| Synopsis: These remote packages are missing security patches : - libaudiofile-dev - libaudiofile0 - libaudiofile0-dbg Description: It was discovered that Audio File Library contained a heap-based buffer overflow. If a user or automated system processed a crafted WAV file, an attacker could cause a denial of service via application crash, or possibly execute arbitrary code with the privileges of the user invoking the program. The default compiler options for Ubuntu should reduce this vulnerability to a denial of service. Solution: Upgrade to : - libaudiofile-dev-0.2.6-7ubuntu2.1 (Ubuntu 9.10) - libaudiofile0-0.2.6-7ubuntu2.1 (Ubuntu 9.10) - libaudiofile0-dbg-0.2.6-7ubuntu2.1 (Ubuntu 9.10) Risk factor: Medium / CVSS Base Score : 6.8 (CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P) |
||



