Family: Mandrake Local Security Checks --> Category: infos
MDKSA-2003:015: slocate Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the slocate package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory MDKSA-2003:015 (slocate).
A buffer overflow vulnerability was discovered in slocate by team USG. The
overflow appears when slocate is used with the -c and -r parameters, using a
1024 (or 10240) byte string. This has been corrected in slocate version 2.7.
Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2003:015
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.